Re: error 0x08 in response to Juniper vestigial auth packet (was: Connecting to Pulse Secure results in SSL)

2018-09-03 Thread Daniel Lenski
On Mon, Sep 3, 2018 at 3:39 AM, Brandon Liles wrote: > I haven't had any success trying to MITM the Pulse Secure handshake. > With Fiddler on Windows, after setting up HTTPS decryption, the client > just spins saying "Connecting". Which version of the Pulse/NC client are you testing with? Did you

Re: error 0x08 in response to Juniper vestigial auth packet (was: Connecting to Pulse Secure results in SSL)

2018-09-03 Thread Daniel Lenski
On Mon, Sep 3, 2018 at 3:27 AM, Andy Tsvetinskiy wrote: > > I could compile debug versions of openconnect and test with verbose logging. > Please let me know. Try to help You don't need to compile any special version of openconnect. Running `openconnect - --dump` should get you all the verbos

Re: error 0x08 in response to Juniper vestigial auth packet (was: Connecting to Pulse Secure results in SSL)

2018-09-03 Thread Daniel Lenski
On Mon, Sep 3, 2018 at 2:00 AM, Andreas Gnau wrote: > > Hello Daniel, > I am experiencing the same problem. Thanks for bringing this up to a wider > audience and doing the research. I have done the same kind of research a few > months ago and I came to the same conclusion that many encountered t

Re: error 0x08 in response to Juniper vestigial auth packet (was: Connecting to Pulse Secure results in SSL)

2018-09-03 Thread Brandon Liles
I haven't had any success trying to MITM the Pulse Secure handshake. With Fiddler on Windows, after setting up HTTPS decryption, the client just spins saying "Connecting". On Mon, 2018-09-03 at 11:00 +0200, Andreas Gnau wrote: > Hello Daniel, > I am experiencing the same problem. Thanks for bring

Re: error 0x08 in response to Juniper vestigial auth packet (was: Connecting to Pulse Secure results in SSL)

2018-09-03 Thread Andreas Gnau
Hello Daniel, I am experiencing the same problem. Thanks for bringing this up to a wider audience and doing the research. I have done the same kind of research a few months ago and I came to the same conclusion that many encountered this, but no-one found a solution. If I remember correctly,