Today, i've spent several hours hunting this down.
I've finally figured out, that my OpenVPN connection becomes unresponsive after visiting 2-3 websites, because my DSL router (Speedport W921V) "detects" some UDP connections as DoS attack.
This seems to be a problem of several routers and unfortunately there is no way to configure the router firewall.
Now, if i start the VPN manually with the --no-dtls option the connection works fine.
I'd really love to have this configurable in NetworkManager because i'm used to use the NetworkManager and not the openconnect CLI client.
For searchability: The router log message says "DoS(Denial of Service) Angriff fragmentation flood wurde entdeckt. (FW101)".
Today, i've spent several hours hunting this down.
I've finally figured out, that my OpenVPN connection becomes unresponsive after visiting 2-3 websites, because my DSL router (Speedport W921V) "detects" some UDP connections as DoS attack.
This seems to be a problem of several routers and unfortunately there is no way to configure the router firewall.
Now, if i start the VPN manually with the --no-dtls option the connection works fine.
I'd really love to have this configurable in NetworkManager because i'm used to use the NetworkManager and not the openconnect CLI client.
For searchability: The router log message says "DoS(Denial of Service) Angriff fragmentation flood wurde entdeckt. (FW101)".