- Name:
- openconnect
- Version:
- 7.06-5
- Description:
- A VPN client compatible with Cisco's AnyConnect SSL VPN and ocserv. OpenConnect is a client that follows the Cisco's AnyConnect SSL VPN protocol, which is supported by IOS 12.4(9)T or later on Cisco SR500, 870, 880, 1800, 2800, 3800, 7200 Series and Cisco 7301 Routers, as well as the OpenConnect VPN server.
- Installed size:
- 81kB
- Dependencies:
- libc, libxml2, kmod-tun, resolveip, vpnc-scripts, libgnutls
- Categories:
- network---vpn
- Repositories:
- community-packages
- Architectures:
- i386_geode, i386_i486
- LEDE Release:
- LEDE-17.01.4
- File size:
- 81kB
- License:
- LGPLv2.1+
- Maintainer:
- Nikos Mavrogiannopoulos
- Bug report:
- Bug reports
- Source code:
- Sources
OpenConnect is a cross-platform multi-protocol SSL VPN client which supports a number of VPN protocols:
I have OpenWRT set up with OpenConnect as a VPN server, in Anyconnect compatible mode. Because I didn't have two internet connections, I did some testing with a laptop tethered to an Android phone, so laptop - android - cell network - home OpenWRT. That works fine, it stays up and stable, if pretty slow. An openconnect VPN server, which implements an improved version of the Cisco AnyConnect protocol, has also been written. OpenConnect is released under the GNU Lesser Public License, version 2.1. Development of OpenConnect was started after a trial of the Cisco AnyConnect client under Linux found it to have many deficiencies. VPN Cisco RV340 VPN Project and Cisco VPN in same time. An Cisco's AnyConnect SSL VPN — for that problems as a dhcp client from target' - Super on OpenWRT 'no response client OpenWRT as Vpn Client 2020:: These switches connect directly PPTP VPN client with Battery, OpenVPN Client, I'm User vpn.
- Cisco AnyConnect (--protocol=anyconnect)
- Juniper SSL VPN (--protocol=nc)
- Pulse Connect Secure (--protocol=pulse
- Palo Alto Networks GlobalProtect SSL VPN (--protocol=gp)
- F5 Big-IP SSL VPN (--protocol=f5)
- Fortinet Fortigate SSL VPN (--protocol=fortinet)
OpenConnect is not officially supported by, or associated in any waywith Cisco Systems, Juniper Networks, Pulse Secure, Palo Alto Networks, F5,or Fortinet, or any of the companies whose protocols we may support in the future.It just happens to interoperate with their equipment. Trademarks belong totheir owners in a rather tautological and obvious fashion.
An openconnect VPN server (ocserv), which implementsan improved version of the Cisco AnyConnect protocol, has also beenwritten.
OpenConnect is released under the GNU Lesser Public License, version 2.1. Gale banks engineering driver download for windows 10.
Motivation
Development of OpenConnect was started after a trial of the Cisco AnyConnectclient under Linux found it to have many deficiencies:
- Inability to use SSL certificates from a TPM or PKCS#11 smartcard, or even use a passphrase.
- Lack of support for Linux platforms other than i386.
- Lack of integration with NetworkManager on the Linux desktop.
- Lack of proper (RPM/DEB) packaging for Linux distributions.
- 'Stealth' use of libraries with dlopen(), even using the development-only symlinks such as libz.so — making it hard to properly discover the dependencies which proper packaging would have expressed
- Tempfile races allowing unprivileged users to trick it into overwriting arbitrary files, as root.
- Unable to run as an unprivileged user, which would have reduced the severity of the above bug.
- Inability to audit the source code for further such 'Security 101' bugs.
Naturally, OpenConnect addresses all of the above issues, and more. Download datapath graphic.
New protocols
Adding new protocols to OpenConnect is relatively simple, andadditional protocols have been added over the years since usingOpenConnect allows a developer to concentrate on the protocol itselfand most of the boring details about platform-specific tunnel managementand IP configuration, and handling of client SSL certificates, are alreadyresolved. Emerald laptops & desktops driver download.
Openwrt Cisco Anyconnect Client
If you have a protocol which you think it makes sense to support inOpenConnect, especially if you are able to help with interoperabilitytesting, please file an issuein GitLab.
Consistent multi-protocol support
Openwrt Cisco Anyconnect Download
Wherever possible, OpenConnect presents a uniform API and command-lineinterface to each of these VPNs. For example,openconnect --force-dpd=10will attempt dead peer detection every 10 seconds on every VPN thatsupports it, even though the actual mechanism used may be protocol-specific.Protocol-specific features and deficiencies are described on theindividual protocol pages.