Upgrade from SP2 to SP2 IR1 in case of non default connection manager port breaks SSLVPN setup

  • 3990322
  • 27-Mar-2008
  • 26-Apr-2012

Environment

Novell Access Management 3 SSLVPN Server
Novell Access Management 3 Support Pack 2 IR1 applied

Situation

After an upgrade from SP2 to SP2 IR1 build connection to the SSLVPN server was no longer possible.
The message seen in the browser when they authenticate is "Error: SSL VPN Gateway is not available".

Applet log on the client side showed:
SSL VPN Applet: Warning : No message from OpenVPN : java.net.SocketException: Software caused connection abort: recv failed
Error : No response from OpenVPN module, tried 10 times

Catalina.out showed:
SSLVPN : Could not open socket to Connection Manager. Reason: IO errorjava.net.ConnectException: Connection refused

In this scenario the connection manager port was set to 443 so not the default one of 2010.

The /etc/opt/novell/sslvpn/config.xml reflected the correct port number of 443
The /var/opt/novell/tomcat4/webapps/sslvpn/WEB-INF/config.txt had port 2010 so was set back to the default port after the upgrade.

Resolution

Move or copy the /var/opt/novell/tomcat4/webapps/sslvpn/WEB-INF/config.txt.rpmsave to config.xml and restart the sslvpn component.
Is fixed with Novell Access Manager 3 Support Pack 2 IR2.