cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
155946
Views
75
Helpful
74
Replies

MacOS Catalina 10.15 Support

Rina5495
Level 1
Level 1

 

Cisco Any connect client fails with an error. Error details can find here. https://support.apple.com/en-us/HT208436 

 

In Summary,  it seems that 32bit software isn't supported in MacOS Catalina.  

 

Is there a 64bit version for MacOS? or a version compatible with 10.15? 

 

 

74 Replies 74

Sorry

You could try to force a "trust" of the certification.
Navigate to Applications > Utilities > Keychain Access and locate the certificate. Double-click the certificate and then expand "Trust". In the dropdown for "When using this certificate:" select always trust.
Once you have done this test again.

--
Please remember to select a correct answer and rate helpful posts

Do not check the box: "Always trust this server and import the certificate".

Just press the button: "Connect Anyway".

That worked for me. If I check the box "Always trust this server and import the certificate" I get the message "AnyConnect cannot confirm it is connected to your secure gateway. The local network may not be trustworthy. Please try another network." and the connection fails.

It works very well for me! Thanks a lot!

I'm using MacOS Catalina 10.15 and AnyConnect 4.8.00175 I was receiving the message "Anyconnect can not confirm it is connected to your secure gateway. The local network may not be trustworthy. Please try another network." and these steps in terminal worked for me! Thank you for the post.

Hi, friends.
First, my english is not very good, I'm sorry. Still, I want my explanation to be complete and clear.Still, I want my explanation to be complete and clear.

My access is done with my own certificate and my problems with AnyConnect, v.4.6.03049, appeared with the latest macOS Catalina update at 10.15.1. These are the steps I followed.
- I closed Safari.
- I uninstalled AnyConnect.
- I deleted all my personal certificates. Yes all :(
- I closed all the programs and turned off Mac by unchecking "reopen the windows".
- I booted Mac and installed anyconnect-macos-4.6.03049.
- I installed only the personal VPN access certificate.
- Again, I closed all the programs and turned off Mac by unchecking "reopen the windows".
- I started the team again and ran AnyConnect.

 

This is the method that worked for me.

 

Captura de pantalla 2019-11-08 a las 10.30.01.png

 

Best regards

@Marius Gunnerud Sadly your tip didn't work for me, I'm getting this error 'The VPN client was unable to successfully verify the IP forwarding table modifications':

 

default 17:27:05.284995+0100 Cisco AnyConnect Secure Mobility Client Function: processIfcData File: ../../vpn/Api/ConnectMgr.cpp Line: 3712 Authentication succeeded
default 17:27:05.285089+0100 Cisco AnyConnect Secure Mobility Client VPN state: Connecting Network state: Network Accessible Network control state: Network Access: Available Network type: Undefined
default 2019-11-.28522316 17:27:05+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Establishing VPN session...
default 17:27:05.288222+0100 Cisco AnyConnect Secure Mobility Client The profile configured on the secure gateway is: tdch-profile.xml
default 17:27:05.289196+0100 Cisco AnyConnect Secure Mobility Client Function: launchCachedDownloader File: ../../vpn/Api/ConnectMgr.cpp Line: 8372 Launching Cached Downloader: path: '/opt/cisco/anyconnect/bin/vpndownloader.app/Contents/MacOS/vpndownloader' cmd:  '"-ipc gc -cd"'
default 17:27:05.444160+0100 Cisco AnyConnect Secure Mobility Client Function: IsValid File: ../../vpn/CommonCrypt/VerifyFileSignatureMac.cpp Line: 153 Code-signing verification succeeded. File (/opt/cisco/anyconnect/bin/vpndownloader.app/Contents/MacOS/vpndownloader)
default 17:27:05.448884+0100 Cisco AnyConnect Secure Mobility Client Function: launchCachedDownloader File: ../../vpn/Api/ConnectMgr.cpp Line: 8391 Invoked Function: ConnectMgr::launchCachedDownloader Return Code: 0 (0x00000000) Description: Successfully launched the cached downloader
default 17:27:05.867598+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: The AnyConnect Downloader is performing update checks...
default 17:27:05.868051+0100 Cisco AnyConnect Secure Mobility Client Function: processDnldrArgsRequest File: ../../vpn/Api/ConnectMgr.cpp Line: 15363 Determine proxy: false
default 17:27:05.879131+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Checking for profile updates...
default 17:27:05.879713+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Checking for product updates...
default 17:27:05.880057+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Checking for customization updates...
default 17:27:05.880621+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Performing any required updates...
default 17:27:05.881196+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: The AnyConnect Downloader updates have been completed.
default 17:27:05.907411+0100 Cisco AnyConnect Secure Mobility Client VPN state: Connecting Network state: Network Accessible Network control state: Network Access: Available Network type: Undefined
default 17:27:05.910697+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Establishing VPN session...
default 17:27:05.911631+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Establishing VPN - Initiating connection...
default 17:27:06.037933+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Establishing VPN - Examining system...
default 17:27:06.047158+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Establishing VPN - Activating VPN adapter...
default 17:27:06.075560+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Establishing VPN - Configuring system...
default 17:27:09.592787+0100 Cisco AnyConnect Secure Mobility Client VPN state: Disconnecting Network state: Network Accessible Network control state: Network Access: Restricted Network type: Undefined
default 17:27:09.592873+0100 Cisco AnyConnect Secure Mobility Client Function: getStateMessage File: ../../vpn/Api/ClientIfcBase.cpp Line: 3199 Disconnect in progress.
default 17:27:09.592916+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Disconnect in progress, please wait...
default 17:27:10.876339+0100 Cisco AnyConnect Secure Mobility Client VPN state: Disconnecting Network state: Network Accessible Network control state: Network Access: Available Network type: Undefined
default 17:27:10.876483+0100 Cisco AnyConnect Secure Mobility Client Function: suppressTerminateErrorPopup File: ../../vpn/Api/AgentIfc.cpp Line: 680 AgentIfc :: suppressTerminateErrorPopup[5]. - [NO]
default 17:27:10.876512+0100 Cisco AnyConnect Secure Mobility Client Message type error sent to the user: The VPN client was unable to successfully verify the IP forwarding table modifications.  A VPN connection will not be established.
default 17:27:10.877206+0100 Cisco AnyConnect Secure Mobility Client VPN state: Disconnected Network state: Network Accessible Network control state: Network Access: Available Network type: Undefined
default 17:27:10.877237+0100 Cisco AnyConnect Secure Mobility Client Function: setConnectRequestComplete File: ../../vpn/Api/ConnectMgr.cpp Line: 10825 Connect request complete. Proceeding to cleanup.
default 17:27:10.877765+0100 Cisco AnyConnect Secure Mobility Client Message type information sent to the user: Ready to connect.
 
And guess what our internal IT dept. don't care as they claim MacOS isn't a supported platform in our company though 20% are using it - Windoze people so much su..s :/

 

I was setting up AnyConnect 4.6x on a user's macOS 10.15 Catalina and this solution got me halfway there--I was then able to connect by not checking the "Always Trust this Certificate" checkbox and clicking "Connect Anyway."  It would still fail if that checkbox was selected.  Thanks for the help!

this is what I am receiving and the next post by Marius Gunnerud sharing re: terminal worked for me.

peteichuk
Level 1
Level 1

please, remove it message

peteichuk
Level 1
Level 1

I installed Java 8 (jre) and errors no longer occur and everything works.

@peteichuk which version? JRE or JDK?

Is there any way i can test in Mojave first before i install catalina as a failsafe?

JRE

I'm on AnyConnect v. 4.8.02042 predeploy and on Catalina 10.15.3 and I still can't get it to connect properly. I've tried the terminal fix and installing the latest Java JRE as suggested. When trying to connect I get "Posture Assessment Failed: Unable to download CSD library. Please try again". I've updated from AnyConnect 4.6 to 4.7 (which both worked before Catalina) and now 4.8 but still getting the same error message every time.

Edit: I can include the DART file if it helps.