openconnect has trouble maintaining a VPN connection
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
linux (Ubuntu) |
Triaged
|
Medium
|
Unassigned | ||
openconnect (Ubuntu) |
Confirmed
|
Undecided
|
Unassigned |
Bug Description
Some time after upgrading to Bionic, I have found that openconnect has some trouble keeping a VPN connection open to our company VPN. Since openconnect in Bionic seems to be based on the same upstream release as in Artful I assume that the problem is more likely to be in the kernel, and the timing of when it started could fit the kernel upgrade from 4.13 to 4.15.. I regularly see this in the output:
SSL read error: Error in the pull function.; reconnecting.
SSL negotiation with <server>
SSL connection failure: The operation timed out
sleep 10s, remaining timeout 300s
SSL negotiation with <server>
SSL connection failure: The operation timed out
sleep 20s, remaining timeout 290
...
Interestingly I just now saw it recover from that problem for the first time I am aware of.
I know that it would make sense to test it with the old kernel, and I will try that some time (I don't reboot that often, and am not always on VPN). In the mean time, I am creating this report in the hope that it will ring some bell with someone.
ProblemType: Bug
DistroRelease: Ubuntu 18.04
Package: openconnect 7.08-3
ProcVersionSign
Uname: Linux 4.15.0-10-generic x86_64
ApportVersion: 2.20.8-0ubuntu10
Architecture: amd64
CurrentDesktop: ubuntu:GNOME
Date: Fri Mar 9 10:25:56 2018
InstallationDate: Installed on 2017-10-24 (135 days ago)
InstallationMedia: Ubuntu 17.10 "Artful Aardvark" - Release amd64 (20171018)
SourcePackage: openconnect
UpgradeStatus: Upgraded to bionic on 2018-02-06 (30 days ago)
---
ApportVersion: 2.20.8-0ubuntu10
Architecture: amd64
AudioDevicesInUse:
USER PID ACCESS COMMAND
/dev/snd/
/dev/snd/
CurrentDesktop: ubuntu:GNOME
DistroRelease: Ubuntu 18.04
HibernationDevice: RESUME=
InstallationDate: Installed on 2017-10-24 (149 days ago)
InstallationMedia: Ubuntu 17.10 "Artful Aardvark" - Release amd64 (20171018)
MachineType: Dell Inc. Latitude E7440
Package: openconnect 7.08-3
PackageArchitec
ProcFB: 0 inteldrmfb
ProcKernelCmdLine: BOOT_IMAGE=
ProcVersionSign
RelatedPackageV
linux-
linux-
linux-firmware 1.173
Tags: wayland-session bionic wayland-session
Uname: Linux 4.15.0-12-generic x86_64
UpgradeStatus: Upgraded to bionic on 2018-02-06 (44 days ago)
UserGroups: adm cdrom dip lpadmin plugdev sambashare sudo vboxusers
_MarkForUpload: True
dmi.bios.date: 02/02/2015
dmi.bios.vendor: Dell Inc.
dmi.bios.version: A14
dmi.board.name: 0WK2DM
dmi.board.vendor: Dell Inc.
dmi.chassis.type: 9
dmi.chassis.vendor: Dell Inc.
dmi.modalias: dmi:bvnDellInc.
dmi.product.name: Latitude E7440
dmi.product.
dmi.sys.vendor: Dell Inc.
affects: | linux-meta (Ubuntu) → linux (Ubuntu) |
Changed in linux (Ubuntu): | |
importance: | Undecided → Medium |
status: | Confirmed → Triaged |
I tried it for a bit with the old Artful kernel without issues. As soon as I booted back into the Bionic 4.15 I was unable to connect to the VPN again. It might be worth mentioning that the Cisco VPN tool also failed to connect. I did not try that one with 4.13.