i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect i hate cisco anyconnect v
tried installing the official cisco anyconnect client for mac cause openconnect is a bitch in its own way

anyconnect completely broke dns until i uninstalled it
@lily a couple of months ago I realized I needed to build an unreleased version of openconnect due to some upgrade on the server side. If you're experiencing problems with the connection dying after every hour connected then this is why; it is a bug in opeconnect that only ~recently became a problem. I can share the specific commit needed if that is the case.
@mcrees that would be nice
that's not the problem i was trying to solve but that has been annoying the hell out of me
@lily I realize now that macports didn't have the good sense to store the git commit hash from which I built, nor was it embedded in the openconnect binary's version information... but judging by the date I must have cloned off master at commit 0dcdff87db65daf692dc323732831391d595d98d. The specific commit that supposedly fixed the problem is linked below, which I found through issue #659 that is linked in the commit message. I think I ended up cloning off master instead of just applying this one patch because it didn't apply cleanly to the last released version and I was too busy to tweak it. https://gitlab.com/openconnect/openconnect/-/commit/94e0b16c011b7b88708b8a8505fac6bfbe2e3cca
Use RFC9266 'tls-exporter' channel bindings for Cisco STRAP with TLSv1.3 (94e0b16c) · Commits · OpenConnect VPN projects / OpenConnect · GitLab

Fixes #659 Signed-off-by: David Woodhouse

GitLab