On Wed, 2019-02-06 at 11:31 -0800, Daniel Lenski wrote: > > For AnyConnect, we can let it be a 'best effort' perhaps? > > It'll be "best effort" with GlobalProtect too, since it's not possible > to guarantee that the server will be willing/able to provision a > specific address, and the server just ignores it if you can request an > address it can't provide. Right. We should make NetworkManager-openconnect remember the address it last had for a given connection, too. I think NM gives us a way to update secrets asynchronously now, and they don't *have* to be returned from the auth-dialog. -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/x-pkcs7-signature Size: 5174 bytes Desc: not available URL: <http://lists.infradead.org/pipermail/openconnect-devel/attachments/20190206/dd7a7639/attachment.bin>