Hi all!
I'm having a difficult time finding appropriate troubleshooting resources for SSL VPN connectivity our clients are having when connecting via their browser on the Mobile Access Blade, configured via SmartDashboard.
The issues is: mostly external but sometimes internal workers on Windows, Mac or Linux are having issues fetching their access policies, i.e. there's no packet logged indicating what resources they should have access to, which normally appears there.
I've checked:
- their AD group membership
- the SNX version
- the Java version
- they get connected on the web portal fine
- the web browser version
How do I even "debug" this, can conventional methods be used, such as "tcpdump, zdebug + drop, fw monitor, vpn debug" be used?
Also, which file logs the SSL VPN user activity - vpnd.elg? Couldn't find anything in that file for the specific users in question...
Any advise would be much appreciated regarding this beast.
Thank you!