cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
663
Views
0
Helpful
2
Replies

unable to connect to anyconnect

hi,

I have configured anyconnect for users to connect using web interface.

It works fine ut sometimes it won't let you connect for  sometime, about 15 minutes. after waiting that time you can connect.

The message is the same as if login credentials were wrong.

Is there any parameter I do have to configure?

thank you very much.

Kind regards.

2 Replies 2

Herbert Baerten
Cisco Employee
Cisco Employee

Hi David

my best guess is that this is because sometimes the client does not disconnect cleanly, causing the ASA to consider it still connected. Consequently, it refuses the new connection because there are no more free licenses, or because the number of simultaneous connections for this user has reached the maximum (by default the value for vpn-simultaneous-connections is 3 but this can be changed in the group-policy or by the AAA server).

To confirm, check "show vpn-sessiondb" and "show vpn-sessiondb anyconnect" on the ASA (or "show vpn-sessiondb svc" in older ASA versions) immediately when unable to connect.

hth

Herbert

Hi Herbert,

Thank you very much for your answer.

I will be waiting for the problem to happend again, and then try to see how many sessions are opened at the moment.

I will keep you informed.

Thank you very much.

Kind Regards.