Re: [qubes-users] Problem connecting via VPN ProxyVM (VPN works, but AppVM can't connect)

2017-08-23 Thread 'PhR' via qubes-users
Hello Chris, On 08/22/2017 05:37 PM, Chris Laprise wrote: Working with OpenConnect would be great. There is also a GUI part that needs to be installed: NetworkManager-openconnect-gnome in Fedora. I tried all hints you have given, but nothing seems to work. At least I was able to get a

Re: [qubes-users] Problem connecting via VPN ProxyVM (VPN works, but AppVM can't connect)

2017-08-22 Thread Chris Laprise
On 08/21/2017 07:32 PM, PhR wrote: Chain ciscovpn (3 references) target prot opt source destination ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED ACCEPT all -- anywhere anywhere ACCEPT all -- anywhere anywhere

Re: [qubes-users] Problem connecting via VPN ProxyVM (VPN works, but AppVM can't connect)

2017-08-21 Thread 'PhR' via qubes-users
Hello, On 08/22/2017 12:55 AM, Chris Laprise wrote: Some more questions: [...] some more information: Strangely I can connect via OpenConnect from the command line/CLI: root@my-work:~# openconnect -u MYUSERNAME VPNLINK.com POST https:/// Attempting to connect to server

Re: [qubes-users] Problem connecting via VPN ProxyVM (VPN works, but AppVM can't connect)

2017-08-21 Thread 'PhR' via qubes-users
Hello Chris, On 08/22/2017 12:55 AM, Chris Laprise wrote: Is this Qubes 3.2? Yes. What changes does the Cisco client make to the routing table ('route' command)? Before starting AnyConnect: [user@my-work-vpn ~]$ route Kernel IP routing table Destination Gateway Genmask

Re: [qubes-users] Problem connecting via VPN ProxyVM (VPN works, but AppVM can't connect)

2017-08-21 Thread Chris Laprise
On 08/21/2017 05:19 PM, PhR wrote: Any more ideas? - PhR Some more questions: Is this Qubes 3.2? What changes does the Cisco client make to the routing table ('route' command)? What changes (if any) to 'FORWARD' chain ('iptables -L')? Does running

Re: [qubes-users] Problem connecting via VPN ProxyVM (VPN works, but AppVM can't connect)

2017-08-21 Thread 'PhR' via qubes-users
Hello Chris On 08/21/2017 06:28 PM, Chris Laprise wrote: On 08/20/2017 05:38 PM, 'PhR' via qubes-users wrote: Unfortunately the App-VM which uses the VPN Proxy VM can't connect. The Setup: sys-net <-- sys-firewall <-- my-vpn (Proxy VM) <-- my-work (App VM) (...) You could ping a known IP

Re: [qubes-users] Problem connecting via VPN ProxyVM (VPN works, but AppVM can't connect)

2017-08-21 Thread Chris Laprise
On 08/20/2017 05:38 PM, 'PhR' via qubes-users wrote: Hello, I have successfully setup a fedora 25 bases ProxyVM, which has Cisco's Anyconnect Secure Mobility Client installed. I can successfully connect via VPN and can also ping/reach servers via VPN. Unfortunately the App-VM which uses

[qubes-users] Problem connecting via VPN ProxyVM (VPN works, but AppVM can't connect)

2017-08-20 Thread 'PhR' via qubes-users
Hello, I have successfully setup a fedora 25 bases ProxyVM, which has Cisco's Anyconnect Secure Mobility Client installed. I can successfully connect via VPN and can also ping/reach servers via VPN. Unfortunately the App-VM which uses the VPN Proxy VM can't connect. The Setup: sys-net <--