cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
159851
Views
52
Helpful
11
Replies

AnyConnect keeps reconnecting

Dustin Anderson
VIP Alumni
VIP Alumni

Greetings,

Running into an issue with AnyConnect constantly reconnecting to wireless. I have ISE set to recheck posture every 7 days and this started popping up after the WLC's were updated to 8.2.110.0.

Anyone know of a setting to check as it's driving us nuts.

Thanks,

1 Accepted Solution

Accepted Solutions

Jason Kunst
Cisco Employee
Cisco Employee

Cisco AnyConnect Secure Mobility Client Administrator Guide, Release 4.0 - Configure Posture [Cisco AnyConnect Secure …

  • IP Address ChangeFor the optimal user experience, set the values below to our recommendations.
    • VLAN detection interval—Interval at which the agent tries to detect VLAN changes before refreshing the client IP address. The valid range is 0 to 900 seconds, and the recommended value is 5 seconds.
    • Ping or ARP—The method for detecting IP address changes. The recommended setting is ARP.
    • Maximum timeout for ping—The ping timeout from 1 to 10 seconds.
    • Enable agent IP refresh—Check to enable VLAN change detection.
    • DHCP renew delay—The number of seconds the agent waits after an IP refresh. Configure this value when you have Enable Agent IP Refresh enabled. If this value is not 0, the agent will do an IP refresh during this expected transition. If a VPN is detected during the refresh, the refresh will be disabled. The valid values are 0 to 60 seconds, and the recommended value is 5 seconds.
    • DHCP release delay— The number of seconds the agent delays doing an IP refresh. Configure this value when you have Enable Agent IP Refresh enabled. If this value is not 0, the agent will do an IP refresh during this expected transition. If a VPN is detected during the refresh, the refresh will be disabled. The valid values are 0 to 60 seconds, and the recommended value is 5 seconds.
    • Network transition delay—The timeframe (in seconds) for which the agent suspends network monitoring so that it can wait for a planned IP change. The recommended value is 5 seconds.

View solution in original post

11 Replies 11

kthiruve
Cisco Employee
Cisco Employee

Hi Dustin,

Are you using Anyconnect NAM or posture(compliance module)? Since you mentioned posture, is the AC popping up to do posture and failing?. Please make sure your redirect ACL is correctly applied and the ACL name downloaded from ISE is the same in WLC.

Run debugs on ISE using endpoint debug to see what is happening. You can also gather AC logs and look at the logs to see where it is getting stuck.

Finally if this is the only client having the problem, reboot and see if the problem goes away.

Please open a case with TAC if your initial troubleshooting does not fix it.

Thanks

Krishnan

No, getting multiple clients started this.

Use AC NAM and ISE posture. I have it re-posture every 7 days. ISE shows fine and compliant. WLC does show the reconnecting. May be due to the admin disabling ping over wireless, Trying to see if that is the issue.

So, re-enabling ping seems to have fixed the issue. Not sure what AnyConnect is trying to ping, but with it off it says there is a connection error and tries to reconnect. Having ping allowed seems to have stopped the flapping.

Anyconnect NAM does not send pings. May be something else is happening on the PC. Please check using wireshark what is causing it.

I am using MAC - can I please know how to do these changes, I meant, which file(s) to edit and what to edit.

 

My Cisco Anyconnect installation location is 

/opt/cisco/anyconnect

 

I am getting every few seconds reconnecting when using Cisco Anyconnect ver 4.6. I have tried using different Internet providers.

This section and specifically this topic relate to network access control.  The AnyConnect module being discussed here is the network access manager (NAM), which performs 802.1x functions for endpoints onboarding to the internal network. The reconnecting / reauthentication is not the same as VPN access. 

So it sounds like your question is related to the AnyConnect core remote access VPN functions.  For that you will want to create a thread in the Network Security forum that deals with ASA/AC/FTD.
https://community.cisco.com/t5/network-security/bd-p/discussions-network-security

 

 

Jason Kunst
Cisco Employee
Cisco Employee

Cisco AnyConnect Secure Mobility Client Administrator Guide, Release 4.0 - Configure Posture [Cisco AnyConnect Secure …

  • IP Address ChangeFor the optimal user experience, set the values below to our recommendations.
    • VLAN detection interval—Interval at which the agent tries to detect VLAN changes before refreshing the client IP address. The valid range is 0 to 900 seconds, and the recommended value is 5 seconds.
    • Ping or ARP—The method for detecting IP address changes. The recommended setting is ARP.
    • Maximum timeout for ping—The ping timeout from 1 to 10 seconds.
    • Enable agent IP refresh—Check to enable VLAN change detection.
    • DHCP renew delay—The number of seconds the agent waits after an IP refresh. Configure this value when you have Enable Agent IP Refresh enabled. If this value is not 0, the agent will do an IP refresh during this expected transition. If a VPN is detected during the refresh, the refresh will be disabled. The valid values are 0 to 60 seconds, and the recommended value is 5 seconds.
    • DHCP release delay— The number of seconds the agent delays doing an IP refresh. Configure this value when you have Enable Agent IP Refresh enabled. If this value is not 0, the agent will do an IP refresh during this expected transition. If a VPN is detected during the refresh, the refresh will be disabled. The valid values are 0 to 60 seconds, and the recommended value is 5 seconds.
    • Network transition delay—The timeframe (in seconds) for which the agent suspends network monitoring so that it can wait for a planned IP change. The recommended value is 5 seconds.

Thanks, default in the config is ping. Changed to arp.

How and where do I perform these actions? 

This seems geared towards Windows type software. I posted this same issue for my macbook pro. Has there been cases, solutions regarding macbooks?  

 

Here is my post:

https://community.cisco.com/t5/identity-services-engine-ise/cisco-anyconnect-constantly-reconnecting-on-macbook-pro/td-p/3869047

gbrahma2212
Level 1
Level 1
Spoiler
AnyConnect keeps reconnecting in Ubuntu os

Running into an issue with AnyConnect constantly reconnecting & connected.

recently i installed AnyConnect app ubuntu laptops  constantly reconnecting & connected by using SAMLuth,

before used vpn adopter at working fine.

logs :

Mar 2 08:50:00 laptop name acvpnagent[3282]: Server certificate validation failed with the following errors: #011Certificate does not match the server name.
Mar 2 08:50:00 laptop name acvpnagent[974]: Function: verifyServerCertificate File: ../../vpn/Agent/CertOpenSSLAdapter.cpp Line: 1105 certificate confirmation reason=0x0
Mar 2 08:50:00 laptop name acvpnagent[974]: Function: verifyServerCertificate File: ../../vpn/Agent/CertOpenSSLAdapter.cpp Line: 1195 Thumbprint matched, accepting certificate.
Mar 2 08:50:01 laptop name acvpnagent[974]: A TLS 1.2 connection has been established using cipher DHE-RSA-AES256-SHA256
Mar 2 08:50:01 laptop name acvpnagent[974]: Function: calculateTunnelMTU File: ../../vpn/Agent/CstpProtocol.cpp Line: 2920 The candidate MTU (1399) is derived from the physical interface MTU.
Mar 2 08:50:01 laptop name acvpnagent[974]: Function: startHTTPNegotiation File: ../../vpn/Agent/CstpProtocol.cpp Line: 1027 Proposed base MTU is 1500.
Mar 2 08:50:02 laptop name acvpnagent[974]: Current Profile: none Received VPN Session Configuration Settings: Keep Installed: enabled Rekey Method: disabled Proxy Setting: do not modify Proxy Server: none Proxy PAC URL: none Proxy Exceptions: none Proxy Lockdown: enabled IPv4 Split Exclude: disabled IPv6 Split Exclude: disabled IPv4 Dynamic Split Exclude: disabled IPv6 Dynamic Split Exclude: disabled IPv4 Split Include: 7 IPv4 private networks IPv6 Split Include: disabled IPv4 Dynamic Split Include: disabled IPv6 Dynamic Split Include: disabled IPv4 Split DNS: disabled IPv6 Split DNS: disabled Tunnel all DNS: disabled IPv4 Local LAN Wildcard: local LAN access preference is disabled IPv6 Local LAN Wildcard: local LAN access preference is disabled Firewall Rules: none Client Address: 172.16.11.84 Client Mask: 255.255.255.0 Client IPv6 Address: FE80:0000:0000:0000:DAFD:5BCA:2C2E:AA6A (auto-generated) Client IPv6 Mask: FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FFFC TLS MTU: 1287 TLS Compression: disabled TLS Keep Alive: 20 seconds TLS Rekey Interval: none TLS DPD: 30 seconds DTLS: enabled DTLS MTU: 1406 DTLS Compression: disabled DTLS Keep Alive: 20 seconds DTLS Rekey Interval: none DTLS DPD: 30 seconds Session Timeout: none Session Timeout Alert Interval: 60 seconds Session Timeout Remaining: none Disconnect Timeout: 1800 seconds Idle Timeout: 1800 seconds Server: ASA (9.9(2)56) MUS Host: unknown DAP User Message: none Quarantine State: disabled Always On VPN: not disabled Lease Duration: 1209600 seconds Default Domain: anutacorp.com Home page: unknown Smart Card Removal Disconnect: enabled License Response: unknown SG TCP Keep Alive: enabled Peer's Local IPv4 Address: N/A Peer's Local IPv6 Address: N/A Peer's Remote IPv4 Address: N/A Peer's Remote IPv6 Address: N/A Peer's host name: ASA-5525X.anutacorp.com Client Protocol Bypass: false Tunnel Optimization: disabled
Mar 2 08:50:02 laptop name acvpnagent[974]: The Primary SSL connection to the secure gateway has been established.
Mar 2 08:50:02 laptop name acvpnui[2372]: Message type information sent to the user: Establishing VPN - Examining system...
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: addSplitIncludeNetworksForTunnelDnsServers File: ../../vpn/Agent/VpnMgr.cpp Line: 1117 Added split-include network for tunnel DNS server 172.16.100.5
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: addSplitIncludeNetworksForTunnelDnsServers File: ../../vpn/Agent/VpnMgr.cpp Line: 1117 Added split-include network for tunnel DNS server 4.2.2.2
Mar 2 08:50:02 laptop name acvpnui[2372]: Message type information sent to the user: Establishing VPN - Activating VPN adapter...
Mar 2 08:50:02 laptop name acvpnagent[974]: VPN Adapter Configuration: IPv4 address: 172.16.11.84/24 IPv6 address: FE80:0000:0000:0000:DAFD:5BCA:2C2E:AA6A/126 (auto-generated) Default domain: anutacorp.com DNS suffixes: N/A DNS servers: 172.16.100.5, 4.2.2.2 WINS servers: N/A MTU: 1406
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0354] device (cscotun0): state change: unmanaged -> unavailable (reason 'connection-assumed', sys-iface-state: 'external')
Mar 2 08:50:02 laptop name acvpnui[2372]: Message type information sent to the user: Establishing VPN - Configuring system...
Mar 2 08:50:02 laptop name acvpnagent[974]: Host Configuration: Public address: 192.168.43.106/24 Potential public addresses: 192.168.43.106 Private Address: 172.16.11.84/24 Private IPv6 Address: FE80:0000:0000:0000:DAFD:5BCA:2C2E:AA6A/126 (auto-generated) Remote Peers: IP address (TCP port 443, UDP port 443, source address 192.168.43.106) Private Networks: 9 (172.125.25.0/24, 10.0.0.0/8, 142.103.45.160/27, 172.16.0.0/12, 100.64.2.0/24, 100.64.0.0/24, 192.168.0.0/16, 172.16.100.5/32, 4.2.2.2/32) Private IPv6 Networks: none Public Networks: none Public IPv6 Networks: none Tunnel Mode: yes Tunnel all DNS: no
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0378] device (cscotun0): state change: unavailable -> disconnected (reason 'connection-assumed', sys-iface-state: 'external')
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0384] device (cscotun0): Activation: starting connection 'cscotun0' (2cfe5e97-103c-47eb-bf28-4fee5fc5abff)
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0398] device (cscotun0): state change: disconnected -> prepare (reason 'none', sys-iface-state: 'external')
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0402] device (cscotun0): state change: prepare -> config (reason 'none', sys-iface-state: 'external')
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0406] device (cscotun0): state change: config -> ip-config (reason 'none', sys-iface-state: 'external')
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0409] device (cscotun0): state change: ip-config -> ip-check (reason 'none', sys-iface-state: 'external')
Mar 2 08:50:02 laptop name dbus-daemon[923]: [system] Activating via systemd: service name='org.freedesktop.nm_dispatcher' unit='dbus-org.freedesktop.nm-dispatcher.service' requested by ':1.11' (uid=0 pid=925 comm="/usr/sbin/NetworkManager --no-daemon " label="unconfined")
Mar 2 08:50:02 laptop name systemd[1]: Starting Network Manager Script Dispatcher Service...
Mar 2 08:50:02 laptop name dbus-daemon[923]: [system] Successfully activated service 'org.freedesktop.nm_dispatcher'
Mar 2 08:50:02 laptop name systemd[1]: Started Network Manager Script Dispatcher Service.
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0631] device (cscotun0): state change: ip-check -> secondaries (reason 'none', sys-iface-state: 'external')
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0635] device (cscotun0): state change: secondaries -> activated (reason 'none', sys-iface-state: 'external')
Mar 2 08:50:02 laptop name NetworkManager[925]: <info> [1614655202.0651] device (cscotun0): Activation: successful, device activated.
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 302 Unable to get DNS domain for interface wlp4s0
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 295 Unable to get any DNS server for interface cscotun0
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: getDnsConfiguration File: ../../vpn/Common/Utility/NetInterface_unix.cpp Line: 1160 Invoked Function: CDBusNMHelper::GetDNSConfig Return Code: -17235954 (0xFEF9000E) Description: DBUSNMHELPER_ERROR_EMPTY_CONFIG
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 302 Unable to get DNS domain for interface wlp4s0
Mar 2 08:50:02 laptop name acvpnagent[974]: message repeated 2 times: [ Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 302 Unable to get DNS domain for interface wlp4s0]
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 295 Unable to get any DNS server for interface cscotun0
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: getDnsConfiguration File: ../../vpn/Common/Utility/NetInterface_unix.cpp Line: 1160 Invoked Function: CDBusNMHelper::GetDNSConfig Return Code: -17235954 (0xFEF9000E) Description: DBUSNMHELPER_ERROR_EMPTY_CONFIG
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 295 Unable to get any DNS server for interface cscotun0
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: getDnsConfiguration File: ../../vpn/Common/Utility/NetInterface_unix.cpp Line: 1160 Invoked Function: CDBusNMHelper::GetDNSConfig Return Code: -17235954 (0xFEF9000E) Description: DBUSNMHELPER_ERROR_EMPTY_CONFIG
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDHCP4ServerAddress File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 108 dhcp_server_identifier option not found.
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: findMatchingRouteChange File: ../../vpn/AgentUtilities/Routing/RouteHandlerCommon.cpp Line: 5572 Found link-level VA route FE80:0:0:0:0:0:0:0/64 with different metric (256, expected 1)
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 302 Unable to get DNS domain for interface wlp4s0
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 295 Unable to get any DNS server for interface cscotun0
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: getDnsConfiguration File: ../../vpn/Common/Utility/NetInterface_unix.cpp Line: 1160 Invoked Function: CDBusNMHelper::GetDNSConfig Return Code: -17235954 (0xFEF9000E) Description: DBUSNMHELPER_ERROR_EMPTY_CONFIG
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 302 Unable to get DNS domain for interface wlp4s0
Mar 2 08:50:02 laptop name acvpnagent[974]: message repeated 2 times: [ Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 302 Unable to get DNS domain for interface wlp4s0]
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 295 Unable to get any DNS server for interface cscotun0
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: getDnsConfiguration File: ../../vpn/Common/Utility/NetInterface_unix.cpp Line: 1160 Invoked Function: CDBusNMHelper::GetDNSConfig Return Code: -17235954 (0xFEF9000E) Description: DBUSNMHELPER_ERROR_EMPTY_CONFIG
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: GetDNSConfig File: ../../vpn/Common/Utility/linux/DBusNMHelper.cpp Line: 295 Unable to get any DNS server for interface cscotun0
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: getDnsConfiguration File: ../../vpn/Common/Utility/NetInterface_unix.cpp Line: 1160 Invoked Function: CDBusNMHelper::GetDNSConfig Return Code: -17235954 (0xFEF9000E) Description: DBUSNMHELPER_ERROR_EMPTY_CONFIG
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: applyFirewallConfiguration File: ../../vpn/AgentUtilities/HostConfigMgr.cpp Line: 1281 No Firewall Rules to configure
Mar 2 08:50:02 laptop name acvpnagent[974]: The network control state changed to restricted.
Mar 2 08:50:02 laptop name acvpnui[2372]: Message type information sent to the user: Establishing VPN...
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: OnTunnelStateChange File: ../../vpn/Agent/TND.cpp Line: 2036 tunnel state change (0->1)
Mar 2 08:50:02 laptop name acvpnagent[974]: The VPN connection has been established and can now pass data.
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: run File: ../../vpn/Agent/TlsTunnelMgr.cpp Line: 806 Packet Processing Inline Mode: 0
Mar 2 08:50:02 laptop name acvpnui[2372]: VPN state: Connected Network state: Network Accessible Network control state: Network Access: Restricted Network type: Undefined
Mar 2 08:50:02 laptop name acvpnui[2372]: Using default preferences. Some settings (e.g. certificate matching) may not function as expected if a local profile is expected to be used. Verify that the selected host is in the server list section of the profile and that the profile is configured on the secure gateway.
Mar 2 08:50:02 laptop name acvpnui[2372]: Function: getProfileNameFromHost File: ../../vpn/Api/ProfileMgr.cpp Line: 1269 No profile available for host IP address.
Mar 2 08:50:02 laptop name acvpnui[2372]: Function: getHostInitSettings File: ../../vpn/Api/ProfileMgr.cpp Line: 1353 Profile () not found. Using default settings.
Mar 2 08:50:02 laptop name acvpnagent[974]: The Primary DTLS connection to the secure gateway is being established.
Mar 2 08:50:02 laptop name acvpnui[2372]: Message type information sent to the user: Connected to IP address.
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: initiateTransport File: ../../vpn/Agent/DtlsTunnelTransport.cpp Line: 238 Opened DTLS socket from [192.168.43.106]:52118 to [IP address]:443
Mar 2 08:50:02 laptop name acvpnagent[974]: A routing table change notification has been received. Starting automatic correction of the routing table.
Mar 2 08:50:02 laptop name acvpndownloader[3278]: Function: WaitForCompletion File: ../../vpn/Common/Utility/Thread.cpp Line: 311 The thread has successfully completed execution.
Mar 2 08:50:02 laptop name acvpndownloader[3278]: Function: SetDestinationFileHandle File: ../../vpn/Common/Utility/HttpSession_curl.cpp Line: 482 SetDestinationFileHandle NULL parameter.
Mar 2 08:50:02 laptop name acvpndownloader[3278]: Cisco AnyConnect Secure Mobility Client Downloader (VPN) exiting, version 4.9.06037 , return code 0 [0x00000000]
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: findMatchingRouteChange File: ../../vpn/AgentUtilities/Routing/RouteHandlerCommon.cpp Line: 5572 Found link-level VA route FE80:0:0:0:0:0:0:0/64 with different metric (256, expected 1)
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: findMatchingRouteChange File: ../../vpn/AgentUtilities/Routing/RouteHandlerCommon.cpp Line: 5572 Found link-level VA route FE80:0:0:0:0:0:0:0/64 with different metric (256, expected 1)
Mar 2 08:50:02 laptop name acvpnagent[974]: Automatic correction of the routing table has been successful.
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: OnIpcMessageReceived File: ../../vpn/Common/IPC/IPCDepot.cpp Line: 1205 Invoked Function: CIpcTransport::OnSocketReadComplete Return Code: -33292279 (0xFE040009) Description: IPCTRANSPORT_ERROR_UNEXPECTED remote peer: vpndownloader
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: writeSocketBlocking File: ../../vpn/Common/IPC/UdpTcpTransports_unix.cpp Line: 445 Invoked Function: ::write Return Code: 32 (0x00000020) Description: unknown
Mar 2 08:50:02 laptop name acvpnagent[974]: Function: terminateIpcConnection File: ../../vpn/Common/IPC/IPCTransport.cpp Line: 464 Invoked Function: CSocketTransport::writeSocketBlocking Return Code: -31588341 (0xFE1E000B) Description: SOCKETTRANSPORT_ERROR_WRITE
Mar 2 08:50:02 laptop name acvpnui[2372]: Function: launchCachedDownloader File: ../../vpn/Api/ConnectMgr.cpp Line: 8532 Invoked Function: ConnectMgr::launchCachedDownloader Return Code: 0 (0x00000000) Description: Cached Downloader terminated normally
Mar 2 08:50:02 laptop name acvpnui[2372]: Using default preferences. Some settings (e.g. certificate matching) may not function as expected if a local profile is expected to be used. Verify that the selected host is in the server list section of the profile and that the profile is configured on the secure gateway.
Mar 2 08:50:02 laptop name acvpnui[2372]: Function: getProfileNameFromHost File: ../../vpn/Api/ProfileMgr.cpp Line: 1269 No profile available for host IP address.
Mar 2 08:50:02 laptop name acvpnui[2372]: message repeated 2 times: [ Function: getProfileNameFromHost File: ../../vpn/Api/ProfileMgr.cpp Line: 1269 No profile available for host IP address.]
Mar 2 08:50:02 laptop name acvpnui[2372]: Function: reloadPreferencesAfterUpdates File: ../../vpn/Api/ConnectMgr.cpp Line: 10857 Secure gateway (IP address) was not found in profile .
Mar 2 08:50:02 laptop name acvpnui[2372]: Function: getProfileNameFromHost File: ../../vpn/Api/ProfileMgr.cpp Line: 1269 No profile available for host IP address.
Mar 2 08:50:02 laptop name acvpnui[2372]: Function: getHostInitSettings File: ../../vpn/Api/ProfileMgr.cpp Line: 1353 Profile () not found. Using default settings.
Mar 2 08:50:02 laptop name acvpnui[2372]: VPN state: Connected Network state: Network Accessible Network control state: Network Access: Restricted Network type: Undefined
Mar 2 08:50:02 laptop name acvpnui[2372]: Message type information sent to the user: Connected to IP address.
Mar 2 08:50:03 laptop name acvpnagent[974]: The Primary DTLS connection to the secure gateway has been established.
Mar 2 08:50:09 laptop name PackageKit: daemon quit
Mar 2 08:50:09 laptop name systemd[1]: packagekit.service: Succeeded.
Mar 2 08:50:12 laptop name systemd[1]: NetworkManager-dispatcher.service: Succeeded.
Mar 2 08:50:21 laptop name dbus-daemon[1667]: [session uid=1000 pid=1667] Activating via systemd: service name='org.freedesktop.Tracker1' unit='tracker-store.service' requested by ':1.2' (uid=1000 pid=1664 comm="/usr/libexec/tracker-miner-fs " label="unconfined")
Mar 2 08:50:21 laptop name systemd[1655]: Starting Tracker metadata database store and lookup manager...
Mar 2 08:50:21 laptop name dbus-daemon[1667]: [session uid=1000 pid=1667] Successfully activated service 'org.freedesktop.Tracker1'
Mar 2 08:50:21 laptop name systemd[1655]: Started Tracker metadata database store and lookup manager.
Mar 2 08:50:21 laptop name dbus-daemon[1667]: [session uid=1000 pid=1667] Activating via systemd: service name='org.freedesktop.Tracker1.Miner.Extract' unit='tracker-extract.service' requested by ':1.2' (uid=1000 pid=1664 comm="/usr/libexec/tracker-miner-fs " label="unconfined")
Mar 2 08:50:21 laptop name systemd[1655]: Starting Tracker metadata extractor...
Mar 2 08:50:21 laptop name tracker-extract[3516]: Set scheduler policy to SCHED_IDLE
Mar 2 08:50:21 laptop name tracker-extract[3516]: Setting priority nice level to 19
Mar 2 08:50:21 laptop name dbus-daemon[1667]: [session uid=1000 pid=1667] Successfully activated service 'org.freedesktop.Tracker1.Miner.Extract'
Mar 2 08:50:21 laptop name systemd[1655]: Started Tracker metadata extractor.
Mar 2 08:50:32 laptop name systemd[1655]: tracker-extract.service: Succeeded.
Mar 2 08:50:40 laptop name nautilus[2454]: Called "net usershare info" but it failed: Failed to execute child process “net” (No such file or directory)
Mar 2 08:50:45 laptop name dbus-daemon[1667]: [session uid=1000 pid=1667] Activating service name='org.gnome.gedit' requested by ':1.125' (uid=1000 pid=2454 comm="/usr/bin/nautilus --gapplication-service " label="unconfined")
Mar 2 08:50:45 laptop name dbus-daemon[1667]: [session uid=1000 pid=1667] Successfully activated service 'org.gnome.gedit'
Mar 2 08:51:04 laptop name tracker-store[3508]: OK
Mar 2 08:51:04 laptop name systemd[1655]: tracker-store.service: Succeeded.
Mar 2 08:51:33 laptop name systemd[1655]: Started Application launched by gnome-shell.
Mar 2 08:51:33 laptop name libreoffice-writer.desktop[3583]: javaldx: Could not find a Java Runtime Environment!
Mar 2 08:51:33 laptop name libreoffice-writer.desktop[3583]: Please ensure that a JVM and the package libreoffice-java-common
Mar 2 08:51:33 laptop name libreoffice-writer.desktop[3583]: is installed.
Mar 2 08:51:33 laptop name libreoffice-writer.desktop[3583]: If it is already installed then try removing ~/.config/libreoffice/4/user/config/javasettings_Linux_*.xml
Mar 2 08:51:33 laptop name libreoffice-writer.desktop[3568]: Warning: failed to read path from javaldx
Mar 2 08:51:33 laptop name kernel: [ 419.375444] audit: type=1400 audit(1614655293.151:45): apparmor="ALLOWED" operation="open" profile="libreoffice-soffice" name="/etc/gnutls/config" pid=3585 comm="soffice.bin" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
Mar 2 08:51:33 laptop name kernel: [ 419.407456] audit: type=1400 audit(1614655293.183:46): apparmor="ALLOWED" operation="open" profile="libreoffice-soffice" name="/proc/3586/comm" pid=3586 comm="soffice.bin" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
Mar 2 08:51:33 laptop name kernel: [ 419.415431] audit: type=1400 audit(1614655293.191:47): apparmor="ALLOWED" operation="open" profile="libreoffice-soffice" name="/proc/3586/comm" pid=3586 comm="soffice.bin" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
Mar 2 08:51:33 laptop name kernel: [ 419.439943] audit: type=1400 audit(1614655293.215:48): apparmor="ALLOWED" operation="sendmsg" profile="libreoffice-soffice" pid=3586 comm="soffice.bin" family="unix" sock_type="dgram" protocol=0 requested_mask="send" denied_mask="send" addr=none peer_addr="@7661722F72756E2F6E76696469612D786472697665722D33343739366335330000000000000000000000000000000000000000000000000000000000000000" peer="unconfined"
Mar 2 08:51:33 laptop name kernel: [ 419.439947] audit: type=1400 audit(1614655293.215:49): apparmor="ALLOWED" operation="sendmsg" profile="libreoffice-soffice" pid=3586 comm="soffice.bin" family="unix" sock_type="dgram" protocol=0 requested_mask="send" denied_mask="send" addr=none peer_addr="@7661722F72756E2F6E76696469612D786472697665722D33343739366335330000000000000000000000000000000000000000000000000000000000000000" peer="unconfined"
Mar 2 08:51:33 laptop name kernel: [ 419.490729] audit: type=1400 audit(1614655293.263:50): apparmor="ALLOWED" operation="file_mmap" profile="libreoffice-soffice" name="/tmp/.glIwoxwk" pid=3586 comm="soffice.bin" requested_mask="m" denied_mask="m" fsuid=1000 ouid=1000
Mar 2 08:51:33 laptop name kernel: [ 420.110944] audit: type=1400 audit(1614655293.883:51): apparmor="ALLOWED" operation="open" profile="libreoffice-soffice" name="/etc/gnutls/config" pid=3596 comm="soffice.bin" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
Mar 2 08:51:33 laptop name kernel: [ 420.123785] audit: type=1400 audit(1614655293.899:52): apparmor="ALLOWED" operation="open" profile="libreoffice-soffice" name="/proc/3598/comm" pid=3598 comm="soffice.bin" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
Mar 2 08:51:33 laptop name kernel: [ 420.130711] audit: type=1400 audit(1614655293.903:53): apparmor="ALLOWED" operation="open" profile="libreoffice-soffice" name="/proc/3598/comm" pid=3598 comm="soffice.bin" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
Mar 2 08:51:33 laptop name kernel: [ 420.142419] audit: type=1400 audit(1614655293.915:54): apparmor="ALLOWED" operation="sendmsg" profile="libreoffice-soffice" pid=3598 comm="soffice.bin" family="unix" sock_type="dgram" protocol=0 requested_mask="send" denied_mask="send" addr=none peer_addr="@7661722F72756E2F6E76696469612D786472697665722D33343739366335330000000000000000000000000000000000000000000000000000000000000000" peer="unconfined"
Mar 2 08:51:38 laptop name gnome-shell[1998]: Window manager warning: WM_TRANSIENT_FOR window 0x2e00a78 for 0x2e00ab0 window override-redirect is an override-redirect window and this is not correct according to the standard, so we'll fallback to the first non-override-redirect window 0x2e0009b.
Mar 2 08:51:49 laptop name systemd[1655]: gnome-launched-libreoffice-writer.desktop-3568.scope: Succeeded.