David Woodhouse wrote: > I had a workaround, as described there. I'd even got confirmation from > Nikos that it wasn't entirely the wrong thing to do. > > But I didn't bother to apply it because it was only ever seen with > Juniper servers, and at the time we didn't support Juniper at all; this > was a rather bizarre user trying OpenConnect against a Juniper server > in the days when it *only* supported AnyConnect. > > I've just pushed a fix; can you test it please? Following up on the earlier bug report: http://lists.infradead.org/pipermail/openconnect-devel/2015-May/002998.html I can confirm that the current HEAD version build with the default GnuTLS is not exhibiting the same problem, and is working with Ubuntu 14.04 and GnuTLS 2.12.23-12ubuntu2.2. -Tom