<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AnyConnect show error &amp;quot;The secure gateway has rejected the connection attemp...........&amp;quot; in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/anyconnect-show-error-quot-the-secure-gateway-has-rejected-the/m-p/4071449#M1069392</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You have a dhcp server configured on the tunnel-group. That would take preference for address assignment. Order of address assignment is AAA,DHCP and then local.&lt;/P&gt;
&lt;PRE&gt;tunnel-group "SSL VPN" type remote-access
tunnel-group "SSL VPN" general-attributes
 address-pool VPN_POOL
 default-group-policy "GroupPolicy_SSL VPN"
 dhcp-server 192.168.1.1&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;highly recommend removing that configuration if you are not using a dhcp server.&lt;/P&gt;
&lt;P&gt;Also, sometimes when DHCP is assigned, the ASA might disable the local vpn address assignment. The default is a hidden command so you have to see "show run all" to see it. Like this:&lt;/P&gt;
&lt;P&gt;ASA# sh run all | in vpn-addr&lt;BR /&gt;no vpn-addr-assign aaa&lt;BR /&gt;no vpn-addr-assign dhcp&lt;BR /&gt;vpn-addr-assign local reuse-delay 0&lt;/P&gt;
&lt;P&gt;If you are only using the local pool to assign ip addresses, the above would be the config you need. If you need DHCP or AAA ip address assignment enabled the setting by adding the command.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;a very similar issue is discussed here &lt;A href="https://community.cisco.com/t5/vpn/secure-gateway-has-rejected-the-connection/td-p/2826763" target="_blank"&gt;https://community.cisco.com/t5/vpn/secure-gateway-has-rejected-the-connection/td-p/2826763&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 22 Apr 2020 11:51:50 GMT</pubDate>
    <dc:creator>Sheraz.Salim</dc:creator>
    <dc:date>2020-04-22T11:51:50Z</dc:date>
    <item>
      <title>AnyConnect show error "The secure gateway has rejected the connection attemp..........."</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-show-error-quot-the-secure-gateway-has-rejected-the/m-p/4071419#M1069391</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1587553361423.jpg" style="width: 579px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/72550i58E8389592507D44/image-size/large?v=v2&amp;amp;px=999" role="button" title="1587553361423.jpg" alt="1587553361423.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 11:14:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-show-error-quot-the-secure-gateway-has-rejected-the/m-p/4071419#M1069391</guid>
      <dc:creator>Natapoom</dc:creator>
      <dc:date>2020-04-22T11:14:55Z</dc:date>
    </item>
    <item>
      <title>Re: AnyConnect show error "The secure gateway has rejected the connection attemp..........."</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-show-error-quot-the-secure-gateway-has-rejected-the/m-p/4071449#M1069392</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You have a dhcp server configured on the tunnel-group. That would take preference for address assignment. Order of address assignment is AAA,DHCP and then local.&lt;/P&gt;
&lt;PRE&gt;tunnel-group "SSL VPN" type remote-access
tunnel-group "SSL VPN" general-attributes
 address-pool VPN_POOL
 default-group-policy "GroupPolicy_SSL VPN"
 dhcp-server 192.168.1.1&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;highly recommend removing that configuration if you are not using a dhcp server.&lt;/P&gt;
&lt;P&gt;Also, sometimes when DHCP is assigned, the ASA might disable the local vpn address assignment. The default is a hidden command so you have to see "show run all" to see it. Like this:&lt;/P&gt;
&lt;P&gt;ASA# sh run all | in vpn-addr&lt;BR /&gt;no vpn-addr-assign aaa&lt;BR /&gt;no vpn-addr-assign dhcp&lt;BR /&gt;vpn-addr-assign local reuse-delay 0&lt;/P&gt;
&lt;P&gt;If you are only using the local pool to assign ip addresses, the above would be the config you need. If you need DHCP or AAA ip address assignment enabled the setting by adding the command.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;a very similar issue is discussed here &lt;A href="https://community.cisco.com/t5/vpn/secure-gateway-has-rejected-the-connection/td-p/2826763" target="_blank"&gt;https://community.cisco.com/t5/vpn/secure-gateway-has-rejected-the-connection/td-p/2826763&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 11:51:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-show-error-quot-the-secure-gateway-has-rejected-the/m-p/4071449#M1069392</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2020-04-22T11:51:50Z</dc:date>
    </item>
    <item>
      <title>Re: AnyConnect show error "The secure gateway has rejected the connection attemp..........."</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-show-error-quot-the-secure-gateway-has-rejected-the/m-p/4072093#M1069418</link>
      <description>&lt;P&gt;The problem has been resolved.&lt;BR /&gt;I found that it is a bug of Anyconnect Version 4.8 and ASA Version 7.13.1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvs40531/?rfs=iqvred" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvs40531/?rfs=iqvred&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Apr 2020 06:45:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-show-error-quot-the-secure-gateway-has-rejected-the/m-p/4072093#M1069418</guid>
      <dc:creator>Natapoom</dc:creator>
      <dc:date>2020-04-23T06:45:03Z</dc:date>
    </item>
  </channel>
</rss>

