<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>OpenVpn on Ubuntu and Sophos SSL VPN client restarting</title><link>https://community.sophos.com/utm-firewall/f/management-networking-logging-and-reporting/132057/openvpn-on-ubuntu-and-sophos-ssl-vpn-client-restarting</link><description>I have an Ubuntu user who in the past hasn&amp;#39;t had an issue using the code below to connect to our SSL VPN 
 
 
 but for the past few days when he tries to connect the client just keeps restarting the connection. On the SSL VPN logs I see the following</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: OpenVpn on Ubuntu and Sophos SSL VPN client restarting</title><link>https://community.sophos.com/thread/485911?ContentTypeID=1</link><pubDate>Mon, 10 Jan 2022 14:16:44 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:89981971-d88e-46bc-9331-46b2eac8d3f3</guid><dc:creator>TCF</dc:creator><description>&lt;p&gt;Thank you I will keep that in mind.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: OpenVpn on Ubuntu and Sophos SSL VPN client restarting</title><link>https://community.sophos.com/thread/485813?ContentTypeID=1</link><pubDate>Sat, 08 Jan 2022 14:09:32 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:955ff4d6-4bec-4d6b-8caa-c63e2e6f25e8</guid><dc:creator>dirkkotte</dc:creator><description>&lt;p&gt;hi,&lt;/p&gt;
&lt;p&gt;sorry, no solution or hint regarding your problem.&lt;/p&gt;
&lt;p&gt;But i would try to change some settings.&lt;/p&gt;
&lt;p&gt;Authentication SHA1 is not current/secure.&lt;/p&gt;
&lt;p&gt;... and i am not a friend of TCP/443 as nearly every Firewall/AV/Endpoint-protection try to decrypt this traffic.&lt;/p&gt;
&lt;p&gt;Most success/least problems with TCP 1194.&lt;/p&gt;
&lt;p&gt;... any YES, if you change one of these settings (except key lifetime) all users has to redownload or change the config file.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>