cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3571
Views
5
Helpful
2
Replies

anyconnect could not connect to server

noor.emad1
Level 1
Level 1

Hi All,

i have migrated from ASA 5505 to 5506 everything is working except anyconnect.

the same anyconnect config was working before, now i have ver 4.1.000.2p on ASA ver  9.3(2)2 it seems to not work.

i am getting error "could not connect to server.please verify internet connecttivity and server address.

there is no connectivity issue .

can anyone help?

Thanks,

Noor(uk)

2 Replies 2

Aditya Ganjoo
Cisco Employee
Cisco Employee

Hi Noor,

Please share the syslogs of the ASA when you try connecting with AC.

Also make sure do we see TCP 443 packet reaching the ASA.

Try using debug webvpn svc 255 and then test the connection.

Make sure we have the required configuration for Anyconnect.

Regards,

Aditya

Please rate helpful posts.

noor.emad1
Level 1
Level 1

Hi All,

I think i have found the issue, the ciphers need to be changed on the new anyconnect version 4.1.000.2p

if you apply the following config it will resolve the issue.

ssl cipher default custom "RC4-SHA256:AES256-SHA"
ssl cipher tlsv1 custom "RC4-SHA256:AES256-SHA"
ssl cipher dtlsv1 custom "RC4-SHA256:AES256-SHA"
ssl trust-point vpn.sellerdeck-2015 outside
vpn-tunnel-protocol ikev1 ikev2 ssl-client
vpn-tunnel-protocol ikev1 ikev2 ssl-client

Thanks,

Noor(Uk)