cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
967
Views
0
Helpful
3
Replies

SSL VPN on Cisco ASR1001

alyautdinov
Level 1
Level 1

Hi.

I trying configure ssl vpn on cisco asr1002, but i get anyconnect error:

"the anyconnect package on the secure gateway cannot be located"

Authentication is successful

Log from asr:

Mar 16 2016 13:16:06 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event

Mar 16 2016 13:16:06 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:08 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:08 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:08 MSK: CRYPTO-SSL: Fragmented App data - buffered
Mar 16 2016 13:16:08 MSK: CRYPTO-SSL: Chunk data written..
buffer=0x361E9768 total_len=629 bytes=629 tcb=0x3A4757D0
Mar 16 2016 13:16:08 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:08 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:13 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:13 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:13 MSK: CRYPTO-SSL: Fragmented App data - buffered
Mar 16 2016 13:16:13 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:13 MSK: %SSLVPN-5-LOGIN_AUTH_PASSED: vw_ctx: xxxxx vw_gw: yyyy remote_ip: x.x.x.x user_name: xxxxx, Authentication successful, user logged in
Mar 16 2016 13:16:13 MSK: CRYPTO-SSL: Chunk data written..
buffer=0x361E9748 total_len=961 bytes=961 tcb=0x3A2FC1F4
Mar 16 2016 13:16:13 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:13 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:15 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:15 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:15 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:15 MSK: CRYPTO-SSL: Appl. processing Failed : 8
Mar 16 2016 13:16:27 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:27 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:27 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:27 MSK: CRYPTO-SSL: Appl. processing Failed : 8
Mar 16 2016 13:16:39 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:39 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:39 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:39 MSK: CRYPTO-SSL: Fragmented App data - buffered
Mar 16 2016 13:16:39 MSK: CRYPTO-SSL: sslvpn process rcvd context queue event
Mar 16 2016 13:16:39 MSK: HTTP/1.1 200 OK
Mar 16 2016 13:16:39 MSK: Content-Type: text/html
Mar 16 2016 13:16:39 MSK: Content-Length: 0
Mar 16 2016 13:16:39 MSK: Cache-Control: no-cache
Mar 16 2016 13:16:39 MSK: Connection: Keep-Alive
Mar 16 2016 13:16:39 MSK: Date: Wed, 16 Mar 2016 10:16:39 GMT
Mar 16 2016 13:16:39 MSK: X-Aggregate-Auth: 1
Mar 16 2016 13:16:39 MSK:
Mar 16 2016 13:16:39 MSK:
Mar 16 2016 13:16:39 MSK: CRYPTO-SSL: Chunk data written..
buffer=0x361E9768 total_len=170 bytes=170 tcb=0x4544ADF4
Mar 16 2016 13:16:39 MSK: %SSLVPN-5-SESSION_TERMINATE: vw_ctx: xxxx vw_gw: yyyy remote_ip: x.x.x.x user_name: xxxxx reason: user logged out

What possible reason for this error?

Thanks.

3 Replies 3

Dinesh Moudgil
Cisco Employee
Cisco Employee

Hello alyautdinov,

Based on the IOS that you are running, you might be hitting the following bug:

SSL handshake fails causing browser timeout or Anyconnect package error
CSCua73191

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCua73191/?reffering_site=dumpcr

Regards,
Dinesh Moudgil

P.S. Please rate helpful posts.

Cisco Network Security Channel - https://www.youtube.com/c/CiscoNetSec/

Hi, Dinesh!

We are using version 15.4(3)S4

I found another bug:

ASR1K SSL connection from AnyConnect 4.x client is failing with error "The AnyConnect package on the secure gateway could not be located" CSCuu42183

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCuu42183

Thanks.

It is probable that your IOS is affected with this bug. You might want to open a TAC case to verify this and get this defect updated if it is the correct one.

Regards,
Dinesh Moudgil

P.S. Please rate helpful posts.

Cisco Network Security Channel - https://www.youtube.com/c/CiscoNetSec/