Home

Thu, May. 1st, 2008, 11:00 am
Juniper's SSL/VPN

There were problems with the SSL/VPN after upgrading to 6.0r4.2.1 where the user would visit a site with Active X components and it would not load the component. Changing the Web Caching policy for the affected site to "Unchanged" seemed to do the trick.

1. goto "Resource Policies" -> "Web" -> "Caching"
2. create a new policy for the affected website, in this case it was "foosite*:80,443/*"
3. action "Unchanged (do not add/modify caching headers)"

Wed, Mar. 26th, 2008, 11:55 am
LDAP Issues with Juniper SSL/VPN

So I was getting this problem using our LDAP server with Juniper SA4000 where it would accept your password (it wouldn't give you an error), but it would redirect you to the login screen. In the policy tracing, it would say "Login failed. Reason: OK". grrrrr

So going to "User Realms"/Realm Name/"Authentication Policy" and disabling 'Enable Password Management' seems to be a decent workaround.