FreeNX client quits after connection

I've installed the FreeNX server on my desktop and my laptop is running the nxclient. I can successfully connect/authenticate, but the session quits immediately after I see the NX logo.
Is there a log file somewhere for this? I could not find anything of use.  Also, it might be worth noting that I am using openbox as the WM and my .xinitrc file uses consolekit and dbus to launch openbox-session.

Normally, the logs files is in /tmp or ~/.nx.
Probably the problem is the ssh key authentication.

Similar Messages

  • Some clients can't connect after 10.6.6 update - the see an error -43

    Hi There,
    I'm a designer so am not all that technical but have managed to setup and maintain OS X servers since 10.5.
    I've just updated the server to 10.6.6 and now some of our clients can't connect - they get the following error:
    "There was an error connecting to the server. Check the server name or IP address and try again.
    If you are unable to resolve the problem contact your system administrator."
    If I click OK to the error above on the client, I see another error which reads:
    "The operation cannot be completed because one or more required items cannot be found.
    (Error code -43)"
    I've restarted the server and the clients but no luck.
    The server is running the following services:
    - AFP
    - DNS
    - Firewall
    - NFS (although I don't remember setting this up - is this started with AFP?)
    - Open Directory
    I can ping the server and login via ARD so not sure why we see the first IP address error as mentioned above.
    Any help or suggestions would be most welcome.
    Regards
    Ben

    One question, is this when you hit "Connect to Server" or is this after you've established a connection and try to open/edit/save files?
    Here is some general advice:
    1) I assume your whole network is behind a router and that we are talking a small office environment (5-10 people) and not some large enterprise. If so the Firewall service can probably be disabled. As a matter of fact if your issue is that clients can't connect at all the firewall may actually be causing your problem.
    2) NFS can almost certainly be disabled. Its generally only used for two reasons 1) The netboot service needs it. 2) You support unix/bsd clients. I can see from your list of services that netboot isn't something you're doing and I doubt that as a designer you would have much use for unix/bsd systems.

  • Mapped drives do not open after connecting via Cisco VPN Client

    I have an issue when I initially connect to my remote network, I cannot get to any mapped drive unless I wait a few minutes for the VPN connect to mature. To explain further, I have to wait 2-4 minutes after connecting to the VPN for me to actually connect to those drives.
    The error that pops up is:
    "An error occurred while reconnecting to DriveLetter: to \\Server\sharedDrive\    Microsoft WIndows Network: The network path was not found. This connection has not been restored.
    Now, immediately after  I connect, I am able to successfully ping the server that hosts those folder locations but for some reason I cannot get to the server via UNC/shared drives until I wait a few minutes after connecting. 
    Below is the list of error logs I get when attempting to connect to the mapped drives during those first few minutes of connectivity:
    1      15:26:39.804  10/06/14  Sev=Warning/3 IKE/0xA300005F
    Firewall, Sygate Security Agent, is not running, the client will not send firewall information to concentrator.
    2      15:28:10.614  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    3      15:28:10.614  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    4      15:28:10.614  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    5      15:28:10.614  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    6      15:28:10.614  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    7      15:28:10.614  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    8      15:28:10.614  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    9      15:28:10.614  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    10     15:28:17.188  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    11     15:28:17.188  10/06/14  Sev=Warning/2 IPSEC/0xE3700003
    Function CniInjectSend() failed with an error code of 0xE4510023 (IPSecDrvCB:856)
    12     15:33:50.642  10/06/14  Sev=Warning/2 CVPND/0xA3400015
    Error with call to IpHlpApi.DLL: CheckUpVASettings: Found IPADDR entry addr=192.168.11.120, error 0
    13     15:33:51.656  10/06/14  Sev=Warning/2 CVPND/0xA3400015
    Error with call to IpHlpApi.DLL: CleanUpVASettings: Was able to delete all VA settings after all, error 0
    14     15:35:16.855  10/06/14  Sev=Warning/3 IKE/0xA300005F
    Firewall, Sygate Security Agent, is not running, the client will not send firewall information to concentrator.
    Any ideas on what it could be?

    I have a client that is showing a similar issue.. Windows 7 computer using Cisco IPSec client terminating on a Cisco 881 Router.  I can ping the server by IP, Name and even access the drive from the start menu option, but not the mapped drive.  Currently I am looking into this from a offline file issue in windows, but ran across this post and was wondering if you had figured this out?  I am going to try the following and will post back if that resolves it.
    Doing some research I found that Windows 7 and Vista both have what’s called “slow link mode”.  The behavior is that if the latency of the network connection exceeds 80 milliseconds (ms), the system will transition the files to “offline mode”.  The 80 ms value is configurable using a local group policy edit.
    Open Group policy (start -> run -> gpedit.msc)
    Expand “Computer Configuration”
    Expand “Administrative Templates”
    Expand “Network”
    Click on “Offline Files”
    Locate “Configure slow-link mode”
    This policy can either be disabled or set to a higher value for slower connections.
    https://www.conetrix.com/Blog/post/Fixing-Problem-With-Windows-7-Shared-Files-and-Mapped-Drives-Unavailable-Over-VPN.aspx

  • The latest version of itunes (10.2.2) freezes immdiately after connecting a device when trying to sync to ipod, iphone or ipad. The beachball just keeps spinning forever or until I force quit

    The latest version of itunes (10.2.2) freezes immdiately after connecting a device when trying to sync to ipod, iphone or ipad. The beachball just keeps spinning forever or until I force quit

    Back up all data.
    Triple-click anywhere in the line below on this page to select it:
    ~/Library/Application Support/SyncServices
    Right-click or control-click the line and select
    Services ▹ Reveal in Finder (or just Reveal)
    from the contextual menu.* A folder should open with an item selected. Quit the application if it's running. Move the selected item to the Trash. Relaunch the application and test.
    *If you don't see the contextual menu item, copy the selected text to the Clipboard by pressing the key combination  command-C. In the Finder, select
    Go ▹ Go to Folder...
    from the menu bar and paste into the box that opens by pressing command-V. You won't see what you pasted because a line break is included. Press return.

  • After connecting the clients to start video chat using RTMFP , Can the server finish the video chat

    After connecting the clients to start video chat using RTMFP , Can the server finish the video chat between clients regardless of clients' will ?

    Hi,
    I looked on this site http://portforward.com/routers.htm
    It lists many routing devices both modems and routers.
    I did not see the Surfboard you listed but that does not mean it does not route (It just means it is not in the list)
    Your computer is getting the IP 192.168.1.3 which means a device somewhere between you and the internet is routing.
    Most likely in System Preferences > Network for the connection method you are using you can see a "Router IP" (192.168.1.1 is most likely based on the IP you get)
    Type this into to your Web Browser like you would Apple.com
    You should get a Pop Up.
    Hopefully it will tell what device you are now trying to Log in to.
    This info may help in looking in the Port Forward list.
    If not check all the Motorola devices listed and then iChat in the Next page.
    The third page from the Link page I gave you will detail the default access info (IP and User ID and Password) for each device you visit.
    You may find that there is a common User ID and password across the various devices and this may work for you.
    At Random this one says admin and motorola as the User ID and Password. (others may say different)
    Don't worry about the fact it says to set a Static IP at this stage Or the Port Forwarding info further down each page.
    You will hopefully be now looking at the web pages stored on the modem.
    They work like any other web pages with menu items and links to other pages.
    Search all the menu items and link to see if the device has UPnP
    It tends to be in different places on different routing devices but try Advanced or Admin as well as anything to to do with opening ports.
    A Status page like the first pic on the second link page I listed may well tell you if it has UPnP enable or not (but this is not always the case)
    Tell us what you find out or if you have some other routing device in between you and the Motorola Surfboard.
    10:56 PM Monday; January 19, 2009

  • Unable to browse after connecting through Cisco anytime mobility client.

    After connecting to the client VPN, unable to access any sites.
    Windows 2007.
    Connected to Wifi network.
    I need help in accessing sites.
    This topic first appeared in the Spiceworks Community

    After connecting to the client VPN, unable to access any sites.
    Windows 2007.
    Connected to Wifi network.
    I need help in accessing sites.
    This topic first appeared in the Spiceworks Community

  • Client Macs lose connection to server after Sleep

    Ok, so my previous issues with disk I/O erroros with contacts/Mail etc appears to be resolved after I re-installed ML Server and ML clients on all my macs -- not entirely sure why but now I have new problem where client macs lose connection to the server after sleep
    So my current setup is as follows:
    Server Mac
    Mac Mini Server running ML 10.8.2 Server
    Client Macs
    2 x MBAs with 10.8.2 (Core2Duo & iCore5)
    1 x Mac Mini running 10.8.2 (Core2Due, 4GB 2.4 Ghz etc)
    Issue:
    If I leave the client Mini logged in say, as me and either the mini goes to sleep (or if I put it to sleep) and then I wake the mini up, I appear to lose connection to the server - so whilst I am still logged in as me, I've lost my connection to my home directory e.g. Doc/Music/Pics (I can see instantly my desktop picture defaults to ML galaxy picture, opposed to something I've chosen) folders are no longer present. So obviously as mailbox,iphoto & itunes libraries are missing, Mail, iPhoto & iTunes fail to operate and I my only course of action is to log out and log back in and everything is fine.
    I get the same issue - although not as frequent - on MBA's when you close it and results in having to log out and in again to resolve the issue. I also saw the same problem when it was running Lion as well.
    A couple of things to note:
      - Server Mini is never asleep and is running 24x7 (as its a media streamer as well)
      - Its only occured when in deep sleep -  so if I wake the mac up after a few seconds of sleep, its just fine but if say I leave it overnight and wake it in the morning, its no longer connected.
    Any pointers will be welcome and given that it appear to have occured on a client Mac with Lion as well, it would imply its an issue with the server rather the individual client Macs. Also note, I don;t recall the problem when running Lion Server.
    Thanks
    Rob

    Have you tried looking at the server logs, particularly the 'System' & 'Open Directory' log sets?
    Anything seen in there?
    Also logs on the client machines using the Console app. It's a bit tedious going though logs but they can be very illuminating.

  • (VPN) There is no internet after connection established.

    Hi Guys, 
    Mission: PC-1 in country X would like to use the internet(browsing, using his IP-->)  of PC-2 in country Y.
    Stage: on PC-2 i created "new incoming connection trough the internet" (VPN server) and on PC-1 i set up VPN client with (PPTP). The connection was established, i could browse even shared folder between PC-1 to PC-2,
    BUT: on PC-1 after connected to VPN there was no internet, only file shareing, could not ping the PC-2 Ip, only the PC-2's VPN server. i spent hours checking settings, playing with IPs, route tables, but nothing worked.
    i need assistant, what i did forgot or how can i accomplish my mission other way.  
    P.S in many cases i saw people on Client (PC-1) only unchecked "Use default gateway on remote network".. yes but than its use PC-1 ISP's internet.. but thats what i dont want .. i want to use PC-2's ISP internet...
    Please help.

    Hi,
    This issue may occur if you configure the VPN connection to use the default gateway on the remote network. This setting overrides the default gateway settings that you specify in your Transmission Control Protocol/Internet Protocol (TCP/IP) settings.
    Please refer to this fix:
    https://support.microsoft.com/kb/317025?wa=wsignin1.0
    Karen Hu
    TechNet Community Support

  • SG300 ssh strange error: "A client is already connected"

    Hi,
    I've  got a few SG300-52 switches running software version  1.3.0.62 which I configured for ssh management access with public key  authentication via:
    ip ssh server
    ip ssh pubkey-auth auto-login
    username mgmt password ... privilege 15
    crypto key pubkey-chain ssh
    user-key mgmt rsa
    key-string ...
    This is working fine if I connect interactively from my management system with:
    ssh -i mgmt_id_rsa mgmt@switch
    where mgmt_id_rsa is the name of a file containing the private key.
    I get a privileged command prompt as intended, without being asked for a password.
    However if I try to pass a command on the ssh command line like this:
    ssh -i mgmt_id_rsa mgmt@switch show version
    the command just hangs until I hit the Enter key a second time, and then emits the strange message:
    Received disconnect from 10.11.12.13: 2:
    A client is already connected
    (Exactly like that, including the line break after the "2:" and the blank before "A client".)The same happens if I pipe the command I want to send into ssh like this:
    echo show version | ssh -i mgmt_id_rsa mgmt@switch
    except the error message appears immediately and I don't have to hit Enter a second time.
    This is unfortunate as the objective of the whole exercise is to send commands to the switch from a script.
    Can anyone shed some light on why this is so? What is that strange message "a client is already connected" trying to tell me? Is that another bug in Cisco's ssh implementation? Ideas for a workaround, anyone?
    Thanks,
    Tilman
    PS: I already asked that question over in the "big business" support community before noticing there's a separate small business section, but got no answer there.
    PPS: The real objective of the exercise is to make scripted backups and updates of the switches' configurations, ie. what would be naturally expressed as
    scp -i mgmt_id_rsa mgmt@switch:running-config /var/backup/switch.config
    and
    scp -i mgmt_id_rsa /var/conf/switch.configchange mgmt@switch:running-config
    except it doesn't work that way because the SG300's ssh server lacks scp support. Trying to replace that by
    ssh -i mgmt_id_rsa mgmt@switch copy running-config scp://server/var/backup/switch.config
    and
    ssh -i mgmt_id_rsa mgmt@switch copy scp://server/var/conf/switch.configchange running-config
    led me straight to the problem above. Just in case someone feels inclined to ask the standard forum question: "Why do you want that anyway?" :-)

    Hi all,
    I've improved my expect script a bit to:
    allow specifying the SSH user and keyfile on the command line
    allow sending configuration mode commands
    correctly handle very long commands (line wrap) and commands producing no output
    Extended usage:
    ciscosb-exec confuser@myswitch -i ~/.ssh/confuser_id_rsa -c "ip ssh-client username memyself"
    ciscosb-exec confuser@myswitch -i ~/.ssh/confuser_id_rsa "copy scp://myserver/workdir/myswitch.configchange running-config"
    The "new and improved" script:
    #!/usr/bin/expect
    # Script to run an IOS command on a Cisco Small Business Switch via ssh
    # Prerequisites:
    # - Cisco Sx300 series switch with software version 1.3 or later
    # - public key authentication with auto-logon configured
    # Usage:
    #   ciscosb-exec [] [@]
    # Args:
    #         username on switch
    #         name or IP address of switch
    #      command string to execute
    # Options:
    #   -c          execute in configuration mode
    #   -i use SSH private key from
    #   -d          activate debugging output
    # Result:
    #   Switch response will appear on stdout
    # debug switches
    log_user 0
    exp_internal 0
    # configurable values
    set sshcmd "/usr/bin/ssh -c aes192-cbc"
    # end of configurable values
    # below matches prompts such as "switch#", "switch>", "switch$"
    set prompt "\[>#$\]\ *$"
    # getopt implementation snarfed from http://www2.tcl.tk/17342
    proc getopt {_argv name {_var ""} {default ""}} {
        upvar 1 $_argv argv $_var var
        set pos [lsearch -regexp $argv ^$name]
        if {$pos>=0} {
            set to $pos
            if {$_var ne ""} {
                set var [lindex $argv [incr to]]
            set argv [lreplace $argv $pos $to]
            return 1
        } else {
            if {[llength [info level 0]] == 5} {set var $default}
            return 0
    # parse command line
    set configmode [getopt argv -c]
    getopt argv -i idfile
    if {[getopt argv -d]} {
      log_user 1
      exp_internal 1
    if {[llength $argv] != 2} {
      send_user "Usage: ciscosb-exec \[\] \[@\] \"\"\n"
      send_user "Arguments:\n"
      send_user "        target username (default: current user)\n"
      send_user "          target host name or IP address\n"
      send_user "         command string to execute\n"
      send_user "Options:\n"
      send_user "    -c            execute in configuration mode\n"
      send_user "    -i    use SSH private key from \n"
      send_user "    -d            activate debugging output\n"
      exit 1
    set target [split [lindex $argv 0] @]
    if {[llength $target] == 1} {
      set device [lindex $target 0]
      set userid "$env(USER)"
    } elseif {[llength $target] == 2} {
      set userid [lindex $target 0]
      set device [lindex $target 1]
    } else {
      send_user "bad target: [lindex $argv 0]\n"
      exit 1
    set command [lindex $argv 1]
    if {[info exists idfile]} {
      set sshcmd "$sshcmd -i $idfile"
    eval "spawn $sshcmd -l $userid $device"
    match_max [expr 32 * 1024]
    # handle initial noise
    set timeout 20
    while { 1 } {
      expect {
        # command prompt
        -nocase -re "$prompt"     {break}
        # confirmations (unknown fingerprint etc.)
        -nocase -re "\\(yes/no\\)"  {send "yes\r"}
        # username prompt
        -nocase -re "name:|^login:" {send "$userid\r"}
        # password prompt
        -nocase -re "word:" {send_user "Public key authentication failed\n"; exit}
        # errors
        timeout     {send_user "Timeout waiting for command prompt\n"; exit}
        eof         {send_user "Connect failed: $expect_out(buffer)\n"; exit}
    # disable terminal formatting junk
    send "terminal datadump\r"
    expect {
        -nocase -re "$prompt"     {}
        timeout     {send_user "Timeout waiting for command prompt\n"; exit}
        eof         {send_user "Connection lost: $expect_out(buffer)\n"; exit}
    send "terminal width 0\r"
    expect {
        -nocase -re "$prompt"     {}
        timeout     {send_user "Timeout waiting for command prompt\n"; exit}
        eof         {send_user "Connection lost: $expect_out(buffer)\n"; exit}
    # switch to desired mode
    if {$configmode} {
      send "configure terminal\r"
      expect {
        -nocase -re "$prompt"     {}
        timeout     {send_user "Timeout waiting for command prompt\n"; exit}
        eof         {send_user "Connection lost: $expect_out(buffer)\n"; exit}
    # actual command may take a long time
    set timeout 180
    send "$command\r"
    expect {
        # skip command echo
        -re "$command\[\r\n\]*"   {exp_continue}
        # answer confirmation request
        -nocase -re " \\(Y/N\\).*\? *$" {
            # send confirmation, skip echo
            send "Y"
            expect -re "Y\[\r\n\]*"
            exp_continue
        # collect response, excluding next prompt
        -re "\r\n"                {send_user "$expect_out(buffer)"; exp_continue}
        -nocase -re "$prompt"     {send "exit\r"}
        timeout     {send_user "Timeout waiting for command prompt\n"; exit}
        eof         {send_user "Connection lost: $expect_out(buffer)\n"; exit}
    set timeout 20
    expect {
        # second exit needed for logging out from configuration mode
        -nocase -re "$prompt"     {send "exit\r"}
        timeout     {send_user "Timeout waiting for hangup\n"; exit}
        eof         {exit}
    expect {
        -nocase -re "$prompt"     {puts "Failed to log out, disconnecting"; exit}
        timeout                   {puts "Timeout waiting for hangup"; exit}
        eof                       {exit}
    HTH
    Tilman

  • 10.4.11 clients failing after login to 10.5.8 server

    I am going crazy trying to setup our xserver this year. I had it running last year without any problems. This year, the 10.4.11 clients keep losing connection to the server after login. After login, the Home folder is there, then gone. You can see it disappear. The log reads "cannot mount /network/Servers/mac.ourdomain.edu.au/volumes/t_home/teacher error 22 (Invalid Argument)"
    Leopard clients seem fine.
    I have tried everything - rebinding; reinstalling many times. I thought the path to home folders might be too long; so I made the shortname smaller to get under 89, but I've never had to do this before. Changeip returns no errors. DNS is fine - there are some errors to certain addresses "could not update - permission denied". However these machines are not losing connections. I tried a dummy set up on a different address but got no further. Can anyone post and tell me:
    1. AFP connect via : I usually use Standard to avoid Kerberos timeouts - is this the problem?
    2. Guest access: supposedly helps with Tiger clients - true?
    3. Total path to home folder - Tiger setting?
    4. Login to the server to set up sharing in Server admin using IP Address ok?
    I have never had these sorts of problems. Do I just need to wipe the pre 10.5 clients? They have been set to the same IP for years so I'm wondering what I should do there. Is it DNS? I can get more log files tomorrow.
    Btw, not just beginner - I have spent a fair bit of money and time on training and have had many successful set ups at school, but really struggling here. Any tips or brickbats please . . . thanks very much.

    Unless things have changed, Guest Access must be on the User share on the server.
    The workstation needs access to resources prior to a user actually logging in.
    We use Kerberos only for our 10.4.11 and 10.5.8 clients. We also use the DHCP and DNS service on the Mac servers.
    We set guest access allowed in the AFP section and in File Sharing / Protocol Options. That does not mean that you actually need to give the Guest account access, just that it must be on.

  • Do not seem to be able to backup iPad via iTunes on to my PC. Message after connecting is "iTunes was unable to load class information from Sync Services, Reconnect or try later"  Have tried that but get the same result. Can anyone assist?

    Do not seem to be able to backup iPad via iTunes on to my PC.
    Message after connecting is "iTunes was unable to load class information from Sync Services, Reconnect or try later" 
    Have tried that but get the same result.
    Remedies I've tried are:
    wait and try again
    reboot
    reload iTunes
    NB hp is a relatively new machine and has previously backed up quite happily.
    Can anyone assist?

    RHoodnkt-
    Try rebooting the iPad.  Hold down both the Home and Sleep buttons for several seconds until the Apple logo appears.  Ignore the "Slide to power off" arrow.  It takes a minute or two to restart.
    Also be sure your iPad battery is not completely discharged.
    Fred

  • WIFI Quit after upgrade to firmware 3.1.

    My WIFI quit after upgrading from 2.1.1 to 3.1. It worked twice since the upgrade for a period of an hour or so. I have tried to reset the network, All settings, serveral reinstallation of the firmware. I also Tried to manually enter in my WIFI information, with no success. I tried everything. I can see wifi information when I go into the general settings>About> Wi-Fi Adress 00:1c:b3:48:ce..... My warrenty is no longer valid. Any suggestions???

    I've now posted these changes at two other WiFi threads. Try these Settings changes:
    The Setting changes are:
    Fetch New Data > Push: Off
    Fetch settings are set to Manual & in Advanced all is set to Manual.
    My iPhone also lost WiFi but with the changes above it now connects though it takes a bit longer to find the signal. No longer have Push but WiFi is more important, to me anyway. Another iPhone user had success with the above changes.
    Good luck.

  • Mail "unexpectedly quits" after migration from snow leopard to new iMac running Mountain Lion

    Mail "unexpectedly quits" after migration from snow leopard time machine files to new iMac running Mountain Lion.  I can run connection doctor OK.  But the activity window is blank.   If you try to open message viewer window then mail program crashes.  Would really like to get my old emails back as the old imac is totally dead.  Thanks for any help. 

    Launch the Console application in any of the following ways:
    ☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)
    ☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.
    ☞ Open LaunchPad. Click Utilities, then Console in the icon grid.
    Step 1
    Make sure the title of the Console window is All Messages. If it isn't, select All Messages from the SYSTEM LOG QUERIES menu on the left.
    Enter the name of the crashed application or process in the Filter text field. Post the messages from the time of the last crash, if any — the text, please, not a screenshot. 
    When posting a log extract, be selective. In most cases, a few dozen lines are more than enough.
    Please do not indiscriminately dump thousands of lines from the log into a message.
    Important: Some private information, such as your name, may appear in the log. Edit it out by search-and-replace in a text editor before posting.
    Step 2
    Still in the Console window, look under User Diagnostic Reports for crash reports related to the process. The report name starts with the name of the crashed process, and ends with ".crash". Select the most recent report and post the entire contents — again, the text, not a screenshot. In the interest of privacy, I suggest that, before posting, you edit out the “Anonymous UUID,” a long string of letters, numbers, and dashes in the header of the report, if it’s present (it may not be.) Please don’t post shutdownStall, spin, or hang logs — they're very long and not helpful.

  • AnyConnect client reconnects after 1 minute

    AnyConnect client reconnects after 1 minute; WHY
    version 3.1.02026
    ASA:asa911-k8.bin
    [25-4-2013 8:16:11] Establishing VPN session...
    [25-4-2013 8:16:11] Checking for profile updates...
    [25-4-2013 8:16:11] Checking for product updates...
    [25-4-2013 8:16:11] Checking for customization updates...
    [25-4-2013 8:16:11] Performing any required updates...
    [25-4-2013 8:16:12] Establishing VPN session...
    [25-4-2013 8:16:12] Establishing VPN - Initiating connection...
    [25-4-2013 8:16:12] Establishing VPN - Examining system...
    [25-4-2013 8:16:12] Establishing VPN - Activating VPN adapter...
    [25-4-2013 8:16:15] Establishing VPN - Configuring system...
    [25-4-2013 8:16:16] Establishing VPN...
    [25-4-2013 8:16:16] Connected to my.vpn.com.
    [25-4-2013 8:16:16] Connected to my.vpn.com.
    [25-4-2013 8:17:19] Reconnecting to my.vpn.com...
    [25-4-2013 8:17:19] Establishing VPN - Examining system...
    [25-4-2013 8:17:24] Establishing VPN - Activating VPN adapter...
    [25-4-2013 8:17:25] Establishing VPN - Configuring system...
    [25-4-2013 8:17:25] Establishing VPN...
    [25-4-2013 8:17:25] Connected to my.vpn.com.
    [25-4-2013 8:17:25] Reconnecting to my.vpn.com...
    [25-4-2013 8:17:25] Establishing VPN - Examining system...
    [25-4-2013 8:17:25] Establishing VPN - Activating VPN adapter...
    [25-4-2013 8:17:25] Establishing VPN - Configuring system...
    [25-4-2013 8:17:25] Establishing VPN...
    [25-4-2013 8:17:25] Connected to my.vpn.com.
    [25-4-2013 8:16:11] Establishing VPN session...
    [25-4-2013 8:16:11] Checking for profile updates...
    [25-4-2013 8:16:11] Checking for product updates...
    [25-4-2013 8:16:11] Checking for customization updates...
    [25-4-2013 8:16:11] Performing any required updates...
    [25-4-2013 8:16:12] Establishing VPN session...
    [25-4-2013 8:16:12] Establishing VPN - Initiating connection...
    [25-4-2013 8:16:12] Establishing VPN - Examining system...
    [25-4-2013 8:16:12] Establishing VPN - Activating VPN adapter...
    [25-4-2013 8:16:15] Establishing VPN - Configuring system...
    [25-4-2013 8:16:16] Establishing VPN...
    [25-4-2013 8:16:16] Connected to my.vpn.com.
    [25-4-2013 8:16:16] Connected to my.vpn.com.
    [25-4-2013 8:17:19] Reconnecting to my.vpn.com...
    [25-4-2013 8:17:19] Establishing VPN - Examining system...
    [25-4-2013 8:17:24] Establishing VPN - Activating VPN adapter...
    [25-4-2013 8:17:25] Establishing VPN - Configuring system...
    [25-4-2013 8:17:25] Establishing VPN...
    [25-4-2013 8:17:25] Connected to my.vpn.com.
    [25-4-2013 8:17:25] Reconnecting to my.vpn.com...
    [25-4-2013 8:17:25] Establishing VPN - Examining system...
    [25-4-2013 8:17:25] Establishing VPN - Activating VPN adapter...
    [25-4-2013 8:17:25] Establishing VPN - Configuring system...
    [25-4-2013 8:17:25] Establishing VPN...
    [25-4-2013 8:17:25] Connected to my.vpn.com.

    Hello Michael,
    The problem here is because we cannot succesfully establish a DTLS tunnel. This could happen because:
    - DTLS is blocked somewhere in the path
    - A non-default DTLS port is being used
    If DTLS is blocked in the middle the issue is because as of ASA Release 9.x and AnyConnect Release 3.x, an optimization has been introduced in the form of distinct Maximum Transition Units (MTUs) that are negotiated for TLS/DTLS between the client/ASA. Previously, the client derived a rough estimate MTU which covered both TLS/DTLS and was obviously less than optimal. Now, the ASA computes the encapsulation overhead for both TLS/DTLS and derives the MTU values accordingly.
    As long as DTLS is enabled, the client applies the DTLS MTU (in this case 1418) on the VPN adapter (which is enabled before the DTLS tunnel is established and is needed for routes/filters enforcement), to ensure optimum performance. If the DTLS tunnel cannot be established or it is dropped at some point, the client fails over to TLS and adjusts the MTU on the virtual adapter (VA) to the TLS MTU value (this requires a session level reconnect).
    In order to eliminate this visible transition of DTLS > TLS,  you can configure a separate tunnel group for TLS only access for users that have trouble with the establishment of the DTLS tunnel (such as due to firewall restrictions).
    1. The best option is to set the AnyConnect MTU value to be lower than the TLS MTU, which is then negotiated.
    group-policy ac_users_group attributes
    webvpn
      anyconnect mtu 1300
    This makes TLS and DTLS MTU values equal. Reconnections are not seen in this case.
    2. The second option is to allow fragmentation.
    group-policy ac_users_group attributes
    webvpn
      anyconnect ssl df-bit-ignore enable
    With fragmentation, large packets (whose size exceeds the MTU value) can be fragmented and sent through the TLS tunnel.
    3. The third option is to set the Maximum Segment Size (MSS) to 1460 as follows:
    sysopt conn tcpmss 1460
    In this case, the TLS MTU will be 1427 (RC4/SHA1) which is larger than the DTLS MTU 1418 (AES/SHA1/LZS). This should resolve the issue with TCP from the ASA to the AnyConnect client (thanks to MSS), but large UDP traffic from the ASA to the AnyConnect client might suffer from this as it will be dropped by the AnyConnect client due to the lower AnyConnect client MTU 1418. If sysopt conn tcpmss is modified, it might affect other features such as LAN-to-LAN (L2L) IPSec VPN tunnels.
    If DTLS is not blocked in the middle another potential cause for the DTLS failure that DTLS is configured on a non-default port after the WebVPN is enabled (for example, when the webvpn enable outside command is entered). This is due to Cisco bug ID CSCuh61321 and has been seen in Release 9.x where the ASA pushes the non-default port to the client, but continues to listen to the default port. Consequently, the DTLS is not built and AnyConnect reconnects.
    The workaround for this problem is:
    Disable the WebVPN.
    Enter the DTLS port.
    Enable the WebVPN.
    Regards,
    -Gustavo Medina

  • Computer reboots shortly after connecting cable to ipod

    Just recent got new fifth gen ipod 30 and installed itunes, set up library and playlists. Now ready to connect cable to my USB 2.0 and within 30 seconds after connecting, BAM my computer reboots itself. I later get a signiture message 'BCCODE:19'(and more info). The ipod display prior to reboot indicates "do not disconnect" however, it freezes after the reboot. HELP!! Ipod has downloaded some songs but I need help troubleshooting possible hardware or software conflicts to make any headway. What are my options to remedy this problem forever? Thank you.

    Hi Sherif
    It's probably worth trying a couple of standard trouble shooting techniques:
    - Reset the PRAM: http://support.apple.com/kb/HT1379
    - Reset the SMC: http://support.apple.com/kb/HT3964
    Resetting the SMC often fixes battery/power supply issues; resetting the PRAM probably won't make any difference but it only takes a few seconds and is quite harmless.
    Bob

Maybe you are looking for

  • Different Files Returned when using the Drop Down list on the Search Results Page

    Hi I have a result set of 22 documents when I select Date (Newest) from the drop down on the search results page.  The third document down is called "LL". If I now select Date (Oldest) I have a result Set of 22 documents. However, when I move to the

  • Imac desktop is making real loud fan sound?

    The imac screen went blank & black & when it came back on the fan is running really fast & loud. What's going on??

  • Airport disk just stopped working after Leopard install

    My airport disk worked perfectly in Tiger. After installing Leopard i can see airport disks in the finder but when i try to see contents the system hangs up for a few seconds and then i get a message "can't connect to disk" or something similar. I tr

  • Re:keyfigure in reports

    Hi gurus I have a calculated key which is set with scaling factor of 1 but is displaying a scaling factor of 1,000 (i.e. value of 5 showing as 5,000) This only happens on the WAD and not BEX This calculated key is cumulated (i.e running total), when

  • Confusion on method type declaration

    I am newbie...I am trying to invoke 2 methods and get their return to output a suitable message but I get an error message that I could not understand. Can anyone help. The error is as follows: /tmp/16121/Daniel.java:194: incompatible types found : i