PUSH_REQUEST status=1, intermittent

Hi clever folk.

I'm struggling with this mobile VPN software, some days I can connect, some days I can't.
The other day on one of my maachine, it went through the process, then just disconnects. Fired up McAfee and enabled the built in VPN, connected to that, and then the Watchguard software would work.
Other users in the org don't have this option (of using mcafee VPN).
I can't keep rebooting the firewall every five minutes if this is the fix. I've upgraded to 12.11.0, still the same. The T40 is on 12.11.B706602.

Anyone got any quick fixes?

TA

Here's the log...

2025-04-07T14:01:04.211 Requesting client configuration from :443
2025-04-07T14:01:06.461 LaunchOpenVPN: openvpn full command-line(first 8 chars): --verb 3, length: 73
2025-04-07T14:01:06.465 LaunchOpenVPN: vpn config full path(first 8 chars): C:\Users, length: 51
2025-04-07T14:01:06.988 OVPN:>HOLD:Waiting for hold release:0
2025-04-07T14:01:07.066 OVPN:>LOG:1744030866,D,MANAGEMENT: CMD ''
2025-04-07T14:01:07.067 OVPN:>LOG:1744030866,D,MANAGEMENT: CMD 'hold release'
2025-04-07T14:01:07.067 OVPN:SUCCESS: hold release succeeded
2025-04-07T14:01:07.068 OVPN:>PASSWORD:Need 'Auth' username/password
2025-04-07T14:01:07.145 OVPN:>LOG:1744030867,D,MANAGEMENT: CMD 'username "Auth" "user"'
2025-04-07T14:01:07.147 OVPN:SUCCESS: 'Auth' username entered, but not yet verified
2025-04-07T14:01:07.147 OVPN:>LOG:1744030867,D,MANAGEMENT: CMD 'password [...]'
2025-04-07T14:01:07.148 OVPN:SUCCESS: 'Auth' password entered, but not yet verified
2025-04-07T14:01:07.149 OVPN:>LOG:1744030867,I,TCP/UDP: Preserving recently used remote address: [AF_INET]:443
2025-04-07T14:01:07.149 OVPN:>LOG:1744030867,,Socket Buffers: R=[65536->65536] S=[65536->65536]
2025-04-07T14:01:07.150 OVPN:>LOG:1744030867,I,Attempting to establish TCP connection with [AF_INET]:443 [nonblock]
2025-04-07T14:01:07.151 OVPN:>LOG:1744030867,,MANAGEMENT: >STATE:1744030867,TCP_CONNECT,,,,,,
2025-04-07T14:01:07.151 OVPN:>STATE:1744030867,TCP_CONNECT,,,,,,
2025-04-07T14:01:08.154 OVPN:>LOG:1744030868,I,TCP connection established with [AF_INET]:443
2025-04-07T14:01:08.156 OVPN:>LOG:1744030868,I,TCP_CLIENT link local: (not bound)
2025-04-07T14:01:08.157 OVPN:>LOG:1744030868,I,TCP_CLIENT link remote: [AF_INET]:443
2025-04-07T14:01:08.158 OVPN:>LOG:1744030868,,MANAGEMENT: >STATE:1744030868,WAIT,,,,,,
2025-04-07T14:01:08.158 OVPN:>STATE:1744030868,WAIT,,,,,,
2025-04-07T14:01:08.387 OVPN:>LOG:1744030868,,MANAGEMENT: >STATE:1744030868,AUTH,,,,,,
2025-04-07T14:01:08.388 OVPN:>STATE:1744030868,AUTH,,,,,,
2025-04-07T14:01:08.388 OVPN:>LOG:1744030868,,TLS: Initial packet from [AF_INET]:443, sid=c1b29591 e227b41e
2025-04-07T14:01:08.620 OVPN:>LOG:1744030868,,VERIFY OK: depth=1, O=WatchGuard_Technologies, OU=Fireware, CN=Fireware SSLVPN (SN D0280B1EEBCE1 2022-04-19 16:51:57 UTC) CA
2025-04-07T14:01:08.621 OVPN:>LOG:1744030868,,Validating certificate extended key usage
2025-04-07T14:01:08.622 OVPN:>LOG:1744030868,,++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2025-04-07T14:01:08.623 OVPN:>LOG:1744030868,,VERIFY EKU OK
2025-04-07T14:01:08.623 OVPN:>LOG:1744030868,,VERIFY X509NAME OK: O=WatchGuard_Technologies, OU=Fireware, CN=Fireware SSLVPN Server
2025-04-07T14:01:08.624 OVPN:>LOG:1744030868,,VERIFY OK: depth=0, O=WatchGuard_Technologies, OU=Fireware, CN=Fireware SSLVPN Server
2025-04-07T14:01:08.852 OVPN:>LOG:1744030868,,Control Channel: TLSv1.2, cipher TLSv1.2 ECDHE-RSA-CHACHA20-POLY1305, 2048 bit RSA
2025-04-07T14:01:08.853 OVPN:>LOG:1744030868,I,[Fireware SSLVPN Server] Peer Connection Initiated with [AF_INET]:443
2025-04-07T14:01:10.019 OVPN:>LOG:1744030869,,MANAGEMENT: >STATE:1744030869,GET_CONFIG,,,,,,
2025-04-07T14:01:10.020 OVPN:>STATE:1744030869,GET_CONFIG,,,,,,
2025-04-07T14:01:10.021 OVPN:>LOG:1744030869,,SENT CONTROL [Fireware SSLVPN Server]: 'PUSH_REQUEST' (status=1)
2025-04-07T14:01:10.080 Connection Closed.

Comments

  • james.carsonjames.carson Moderator, WatchGuard Representative

    Hi @beastwez
    The McAfee VPN can also use OpenVPN, so you very likely have a TAP driver issue.

    If the TAP driver installed by McAfee is v9, I'd suggest
    -Uninstall the SSLVPN.
    -Reinstall the SSLVPN. When you get to the point of the install where it asks if you'd like to install the TAP driver, uncheck the box and let the installer finish.
    -Reboot

    If the problem persists, please consider opening a support case via the support center link at the top right of this page.

    -James Carson
    WatchGuard Customer Support

  • Thanks. I uninstalled McAfee, and still get the same issue. I'll try re-installing SSLVPN but my machine isn't the only one it happens with :(

  • james.carsonjames.carson Moderator, WatchGuard Representative

    @beastwez
    If you're still running into the issue, I'd suggest opening a support case.

    -James Carson
    WatchGuard Customer Support

Sign In to comment.