[Q] Cisco Anyconnect Mobile profile goes missing - AT&T, Rogers, Bell, Telus Samsung Galaxy S III

HI All,
I got the Cisco Anyconnect mobile app for the android installed and working with my Cisco security device but there's one thing odd.
After I connect via VPN and then later disconnect, the connection profile is lost. I then have to load a new profile with a slight change in it to recall the profile.
The profile is contains a longer timeout since I use Phonefactor 2factor authentication (radius) and need more time to answer the phone call etc..:
<ClientInitialization>
<UseStartBeforeLogon>false</UseStartBeforeLogon>
<AuthenticationTimeout>45</AuthenticationTimeout>
</ClientInitialization>
This is a huge PITA having to import a new profile after every connection/disconnect cycle.
Anyone else have this issue?
If I don't use an imported xml profile and setup via the Anyconnect Mobile client, the profile stays. (unfortunately there's no way to increase the timeout to 45 seconds.)
Regards,
Victor
SGIII on the Rogers network.
4.0.4
Anyconnect Mobile for Samsung 2.5.5131

Related

WiFi Problems With 2 Networks

Hi
I have a wifi AP at home, and one at work, Both use WPA-PSK with mac addy auth. SSID Visible cause sh1te WM2003SE OS cant cope with hidden SSID.
Get a whole load of oddities from the XDA IIs. Both SSID's and keys are listed in the wifi setup on the device. What I would expect is that if I switch the device on when I am within range of the AP @ work, it connects to it no fuss, likewise, when I drive home, switch XDA on it connects, no fuss, unfortunately this is not usually the case. The following are in order of likelyness to occur!
Problem 1
Sometimes I switch it on, and it sits there searching for eons, never finds AP. If I disable and then re-enable wifi on the XDA then it connects.
Problem 2
Sometimes, the XDA will tell me that its connected to my home network when I am at work - it isn't!
Problem 3
Sometimes I switch it on, it connects to the AP, but no net connectivity - looking. Using PPC Ipconfig, I see that device never managed to get an IP addy. Stop, start wifi problem resolves
Problem 3
Occasionally, the PPC forgets the shared secret, and I have to re-input it, start/stop wifi before it will connect to the AP
Problem 4
Sometimes, it just BLUNTLY REFUSES to connect to the AP if I do the above. In this case I try all the above with a soft reset as well. If that fails then I need remove all the wifi AP's, soft reset, wait (ages) for it to see a new AP, enter the PSK then it will connect.
It also struggles to connect to other APs (wifi hotspots). Things work a whole lot better when there is just one AP involved (i,e not work and home).
Prob 4 occurs once/week, prob 1 occurs every day, others somewhere between. All problems are of course COMPLETELY UNACCEPTABLE for a product that has been released to the consumer.
Nigel
Hello Veledron,
I've a similar problem: at our company WLAN is set up to reqire WPA and authentication with user certificates. Since it is not possible to import user certificates in Windows Mobile 2003 SE "out of the box" I found out how to do that - it is described here
http://www.jacco2.dds.nl/networking/crtimprt.html
a little bit difficould procedure, but it worked - I can see my personal company certificate in the private-certificate store of my MDAIII.
The problem is, that I can't get a connection. WLAN-Manager says "connected", but I can't receive an IP-address - and in the logs of our Cisco-APs I can't see anything from my PDA. What also is a little bit strange for me: the MDAIII does not remember the setting "authentication with certificates", it always switches to "authentication using PEAP"...
any idea?
thanks
Gerald
Hi Veledron & gekap
I too have similiar problem with my netgear router at home. It seems that everytime it connect to the network it will just keep scanning eventhough it prompt that it already connected. It been 2 days and still i cannot manage to connect
Hopefully there is a solution to this problem.
Regardz
shark
There is.... Turn off AP, or move device to location where it is out of range, remove all WiFi profiles from device, hard reset, turn on router. wait (ages) for device to realize that there is a wifi ap nearby, enter PSK, all is well.
There seems to be no pattern to the WiFi failures, I have to do the above maybe twice a week to get it to connect. When the device gets itsself into a poor state this is the only way.
You cant delete an active profile, and the profile list only appears when wifi is turned on (stupid!) hence the need to turn off the AP.
Nigel
Hi Guys,
I manage to solve my wifi problem,
i just add the XDA IIs mac address to my netgear router plus assigned a reserve ip address based on it mac address and was able to connect successfully with no problem. Hope this solution helps.
Regardz
Sharkz
Hi,
thanks for the tips, but all of them are not a solution for me. I do not have any problems connecting to WLANs using WEP or to unencrypted WLANs, but i guess that there are problems with WPA in the PDA2K. I think the guys of you who have succussful connected to a WLAN using WPA have done that using WPA-PSK, not WPA with TKIP as encryption-method and PEAP or certificates as authentication method over 802.1x.
In our company TKIP is mandatory, and it is necessary to use certificates for authentication - this can be done with either EAP-TLS (so called "smartcard or certificate" in the setup-menu of the PDA-2k) or using PEAP. I've troubleshooted this a lot, and I can't see any authentication packet coming to our Cisco-APs from the PDA2K using this methods (I've turned on advanced logging on the APs to see any little bit...).
I fear the worst, that the WLAN-driver of the PDA2K does not support TKIP! Of course WPA is supportet from Windows 2003 Mobile SE, but in my opinion that is not enough - the card driver down the OS must also support the whole WPA-Standard, and it seems to me that the PDA2K driver does only support WPA-PSK. I found an article which can be an explanation of the problem:
http://www.socketforum.com/topic.asp?TOPIC_ID=2924
So I've 2 questions to you:
.) which driver version is installed on your PDA2Ks? (you can find that in the registry under HKLM\SOFTWARE\Drivers\Wavedev - I've: Common: 0.04.01, Device: 1.06.01 GER, DriverVersion: 0.08.00, Patch: 1.00)
.) has anyone of you ever connected to a WLAN using WPA (not WPA-PSK!)?
thanks
Gerald

Auto Network Connection

I've just purchased my O2 Xda IIs and am wondering if there is a way to do this:
IE seems to be one of the programs that automatically connect to Internet using the first default in Network Management.
Is there a way to force it to use the network connection of my choice?
Here's my problem?
When I'm in field, I want to use Optus GPRS Internet settings. (This is slow and doesn't work well in office due to poor reception.)
When I'm in the office, I want to automatically use My Work Network which is wireless.
In order to force IE to use My Work Network, when indoors I must manually change settings in Settings/Connections/Connections/Advanced/Select Networks
This is time consuming and something you sometimes forget to do when moving from field to office quickly.
Thanks!
Marvin
When I turn on Wifi, it automatically changes my selection from MTCTouch WAP (my WAP provider) to My ISP, which works because I use a default gateway and not a proxy server.
Anyway, I'd love to be able to make it automatically select a network of my choice, or even switch IP address depending on which Wifi network I'm connected to. Does anyone know of this?

Auto sync mails on wifi

Hi, small question...
Is there a setting to make my mail automatically sync as soon as it is connecting to a wifi network.
I give an example... i come home, my tp2 logs on to my wifi and automatically checks my emails...
For the moment i still have to do it manually...
Any tips from you pro's outhere?
It must only check trough WIFI not via 3g or mobile internet

Anyone use wifi tethering with android anyconnect?

I setup the anyconnect client on my phone which works great. I can access internal web pages, ssh to internal devices. Problem is that if I launch the anyconnect client on the phone, and then wifi tether my laptop to the phone, the phone will not forward the traffic from the tethered device to the Anyconnect VPN.
FWIW, Wifi Tethering works fine without the Anyconnect.
Running Task650's 4.2.2 rom and the Anyconnect for root users on the phone.
-J
Same problem here. Any help would be appreciated!
it's probably a routing issue on the phone, but I haven't had a chance to look into it yet.
-J
bump.
bump. I will look into this. But can't post my help until I make 10 posts and get the ability to post links
Its a setting set by your administrator
The issue:
You might already know this but your network admin configured the app to prevent sharing of the connection. This is a common measure to prevent breaches in security. Looking at the Cisco AnyConnect release notes:
Cisco has qualified the AnyConnect VPN client over a bluetooth or USB tethered Apple iPhone only. Network connectivity provided by other tethered devices should be verified with the AnyConnect VPN client before deployment.
Click to expand...
Click to collapse
The WorkAround
How AnyConnect works on the android is the same as on a computer, which is documented on SuperUser.
So what we have to do is either, export the VPN profile to another VPN app, or change the variable in memory that prevents tethering of the AnyConnect VPN session.
This can be done using (while it wasn't created for this purpose) Game Gardian

[Q] change CM12 wifi hotspot broadcast channel

Background
I live in the stix and my only source of internet is my 'unlimited' data plan via phone carrier which also 'allows' me to tether.
This gives me about 15meg download on 58-65 ping which is really nice especially as there is no extra charge for the data I use.
Issue
Recently I started getting random 'limited' connectivity.... which of course means no net connection and to fix I discover the 'Default gateway is not available' and the adapter needs resetting. This solves the network connection.... but a complete nightmare if I'm downloading a big file that can't be torrented and I have to start again. I've tried changing from 'Obtain IP address automatically' to manually setting the IP address,subnet mask and default gateway but this random dropout to 'limited' persists.
I installed Vistumbler to check traffic and discover I'm broadcasting on channel 6 which is populated with lots of other traffic (5 other networks near by using channel 6) and figure this may be a potential cause. (someone else disconnecting from channel 6 at shutdown maybe...?... but that's a wild guess) So only way to discover how to stop this happening is by a process of elimination.
Question:
Does anyone know which 3rd party Wi-Fi tethering app will work on Lollipop and can change the broadcast channel number of my wifi hotspot from my Z1c running CM12...?

Categories

Resources