https://bugs.kde.org/show_bug.cgi?id=515706

            Bug ID: 515706
           Summary: plasma-nm fails to read a SAML cookie for a
                    GlobalProtect VPN, then crashes
    Classification: Plasma
           Product: plasmashell
      Version First master
       Reported In:
          Platform: Fedora RPMs
                OS: Linux
            Status: REPORTED
          Severity: normal
          Priority: NOR
         Component: Networks widget
          Assignee: [email protected]
          Reporter: [email protected]
  Target Milestone: 1.0

Created attachment 189349
  --> https://bugs.kde.org/attachment.cgi?id=189349&action=edit
The kded6 backtrace

SUMMARY

As stated above, I can't connect to my school's VPN because of a bug that
*appears* to be in the implementation of the built-in web browser for SAML.

STEPS TO REPRODUCE
1. Go to "Wi-Fi and Networking" in System Settings.
2. Add a new connection - PAN GlobalProtect.
3. Fill out server information and connect.
4. Complete SAML login in the web browser UI that pops up (have tested with
both passkey and password auth).
5. The plasma openconnect log says "Error 512" and reloads the webpage
6. Press cancel or attempt to complete the authentication again

OBSERVED RESULT

Kded6 segfaults and restarts.

EXPECTED RESULT

The authentication UI should have closed, and the SAML cookie (which shows up
in the log!) should have been used to establish the connection.

SOFTWARE/OS VERSIONS
Operating System: Fedora Linux 43
KDE Plasma Version: 6.5.5
KDE Frameworks Version: 6.22.0
Qt Version: 6.10.1
Kernel Version: 6.18.8-200.fc43.x86_64 (64-bit)
Graphics Platform: Wayland
Processors: 16 × AMD Ryzen 7 5800X 8-Core Processor
Memory: 32 GiB of RAM (31.3 GiB usable)
Graphics Processor: NVIDIA GeForce RTX 4070 Ti

ADDITIONAL INFORMATION

The end of the log provided shows:

---
...
Got HTTP response: HTTP/1.1 512 Custom error
Date: Sun, 08 Feb 2026 03:48:24 GMT
Content-Type: application/xml; charset=UTF-8
Content-Length: 0
Connection: keep-alive
Pragma: no-cache
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
x-private-pan-globalprotect: auth-failed
Expires: Thu, 19 Nov 1981 08:52:00 GMT
X-FRAME-OPTIONS: DENY
Set-Cookie: ***; secure; HttpOnly
Set-Cookie: ***; secure; HttpOnly
Set-Cookie: ***; secure; HttpOnly
HTTP body length:  (0)
Unexpected 512 result from server
---

I replaced the cookies with ***. The full backtrace is attached.

-- 
You are receiving this mail because:
You are watching all bug changes.

Reply via email to