openconnect network manager config file can't read "/" in gateway address

Bug #1495924 reported by Zbigniew Pazdan
14
This bug affects 3 people
Affects Status Importance Assigned to Milestone
network-manager-openconnect
Confirmed
Medium
network-manager-openconnect (Ubuntu)
Triaged
Low
Unassigned

Bug Description

My organizations Cisco ASA's are configured so that each VPN group has it's own URL.
This means I have to configure my connections like this:
[vpn]
service-type=org.freedesktop.NetworkManager.openconnect
...
...
...
...
gateway=sslvpnconnect.organization.com/organization-subgroup-Global
authtype=password

This does not work through network manager, as the GUI does not read anything beyond the "/" (forward slash).
In the above example, when selecting the created connection from network manager's available VPN connections, the gateway shows only the part before the slash: sslvpnconnect.organization.com

When trying to connect directly through openconnect via terminal:

openconnect sslvpnconnect.organization.com/organization-subgroup-Global

It works just fine.

Our ASA's are configured in this way and I cannot influence that. The ASA does not give a group dropdown, nor am I able to specify an authgroup parameter. I need to use a unique URL for each VPN group.

Ubuntu 12.04 LTS
network-manager 0.9.8.0-0ubuntu6
network-manager-openconnect 0.9.6.0-0ubuntu2
network-manager-openconnect-gnome 0.9.6.0-0ubuntu2

information type: Public → Public Security
information type: Public Security → Public
description: updated
Revision history for this message
Mike Miller (mtmiller) wrote :

The best thing you can do to address this feature request is to report this upstream with the NetworkManager team. Try filing a bug at https://bugzilla.gnome.org/enter_bug.cgi?product=NetworkManager&component=VPN:%20openconnect. Once you have done so, please respond here with the upstream bug URL so its status can be tracked here.

Changed in network-manager-openconnect:
importance: Unknown → Medium
status: Unknown → Confirmed
Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in network-manager-openconnect (Ubuntu):
status: New → Confirmed
Revision history for this message
panic (dustin-peet) wrote :

This is still an issue for me. Any movement planned around this by chance?

Ubuntu desktop 16.04
Openconnect v7.06

attempting through cli produces the error "Failed to obtain a WebVPN cookie" and thus fails to connect.

Changed in network-manager-openconnect (Ubuntu):
importance: Undecided → Low
status: Confirmed → Triaged
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.