03-13-2018 05:57 AM - edited 03-12-2019 05:06 AM
Hello guys
I have the following situation:
After connecting to my VPN GW with Windows 10 and Cisco AnyConnect 4.5 I see three reconnects. After them, the connection is up and without any problems. It just happens when the Hyper-V Adapter "vEthernet (Management)" is installed. It looks like when the Client connects to the VPN GW, the Hyper-V Adapter intervene in, no connection is possible and after three times the connection over wifi/wire is up, and everything is good. Is there any way that the VPN client dont's use the Hyper-V Adapter? Or do you know that problem at all?
There is article from a blogger who describes the problem a little bit better:
https://mattsinfield.wordpress.com/2017/12/04/windows-10-and-cisco-anyconnect-reconnect-behaviour/
Solved! Go to Solution.
08-29-2018 06:35 AM
Hey,
Just to let you know that we've got it to work on the latest version. Unsure why the first few laptops didn't take right away but all others are now behaving properly.
03-16-2018 11:34 AM
Looks like this is expected. There was a recent doc bug opened by Cisco to update their documentation:
https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvi37860
It looks like the HyperV adapter might be coming up a few times after Anyconnect connects. Each time there is a network change, Anyconnect checks to see if it has to establish connection via that adapter. This may be why the reconnects are happening.
03-27-2018 01:24 AM
Hello Sir
Thank you for that information. Is this going to be fixed or not? Or is there any solution for that behavior?
03-27-2018 12:55 PM
It does not look like there is going to be a fix for the behavior. A possible workaround would be a code change for Anyconnect not to consider the Hyper V adapter as a viable network adapter. I would open a TAC case, reference the bug and check if there is a fix or workaround for this.
04-03-2018 12:45 AM
This is not a solution!
Hyper-V is a supported feature in Windows 10. It is widely used along with supported security features like "Credential Guard, Device Guard" and "Windows Defender Application Guard".
All our computers use "Credential Guard". Either this gets fixed or we need to stop using Cisco Anyconnect.
04-03-2018 06:34 AM
Absolutely agree with you that Cisco should fix this problem. In this day and age, different software should learn to work with each other, especially when they are prominently used in common operating systems. From what it looks like from the bug, Cisco has resigned to the fact that this is expected behavior and that should not be the case. Opening a TAC case and asking for a fix is the next step here.
07-24-2018 01:29 AM
Just to let you know we've managed to get Cisco TAC to implement a fix for this either this month or in August.
Cheers
07-24-2018 04:00 PM
@Oliver Eve : Great to hear. Thanks for that update.
08-27-2018 12:15 AM
Hi, any news about fix?
Cheers
08-27-2018 11:55 PM
It was supposed to have been fixed in 4.6.02074 but we're still seeing the issue so i've asked TAC to one again look into the issue.
"Fixed Hyper-V Behavior Showing Multiple Notifications. To accommodate a Hyper-V behavior change on Windows 10 (Redstone 3 or later), tunnel security reinforcement has been optimized while using tunnel-all or split-exclude configurations. When a new interface address is detected, Hyper-V is properly enforced without causing the appearance of multiple reconnects. (CSCvj71152)"
08-28-2018 12:01 AM
08-29-2018 06:35 AM
Hey,
Just to let you know that we've got it to work on the latest version. Unsure why the first few laptops didn't take right away but all others are now behaving properly.
03-08-2019 12:35 AM
08-30-2021 06:56 AM
Still happening for me on Windows 10 with AnyConnect 4.10, resulting in me having to reimage my machine twice over recent months, and my inability to use Docker for development, which is ridiculous.
The behavior I experienced in both cases leading up to reimaging my machine was that things would seem to work fine initially, then over time I'd see the length of time it takes for the VPN login screen to appear increase (to 1-2 minutes at its worst), and eventually the VPN client can't find the VPN server at all because it's using the Hyper-V network adapter and there's no way to tell it not to use that adapter.
Once it gets to this point even reboots don't solve it, nor does uninstalling and reinstalling AnyConnect. I might get lucky and have it work every dozen or so times trying to log in, but for all intents and purposes once AnyConnect latches onto the Hyper-V adapter completely it's game over.
Side note: WSL2 also doesn't work with AnyConnect, rendering another super useful feature of Windows unusable because of AnyConnect.
To me, given the prevalence of Hyper-V on Windows and where developers are concerned anyway the necessity of using Docker, it's completely ridiculous that there isn't a solution to this. The VPN client shouldn't be a limiting factor that's forcing me to have to use a Mac for development work.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide