AnyConnect "Login Failed"

A lot of users recently have been reporting "Login Failed" error with no details when they try to connect with their AnyConnect client.  When I check the ASA logs, it reports that the username/password was incorrect.  These VPN accounts are linked to the user's AD accounts so when I reset the password to their AD accounts, the issue is resolved and they are finally able to log in with their AnyConnect client.


Why are they getting an incorrect password error to begin with though?  They don't change their passwords and we don't have a password expiration policy.  


I would look to AD to the additional details tab to see if their incorrect login attempts count increases, indicating they are typing the wrong password to begin with. You could also look at security logs on your domain controller for event ID 4625 so see if there are also any incorrect login attempts by that user. We've seen an increase in this as we send more staff home to work as well. Just nervous employees working from home I think.

We've seen this problem too and it's not users entering the wrong password. One day the login succeeds and the next day it fails. We fix it by setting the password in AD to exactly what it was and magically VPN connects. It happened sporadically in the past but seems to be increasing in regularity.

Same here.  This is happening daily for the past week.  My co-worker backed up and then powered off the ASA and when he brought it back up, we could log on.  I thought perhaps the end user didn't have their password correct, but then I had the issue as did my co-workers.  


We also use our AD username/passwords for AnyConnect.  Since the password is correct (or everyone suddenly doesn't know their password), any recommendations?

Thanks in advance.

I've been getting this recently on my Windows machine, the quick workaround for me was to restart but that has stopped working now too.


On my macbook I get this all the time for me the VPN has never worked on Big Sur

