Array Networks SSL VPN

Experimental support for Array AG SSL VPN was added to OpenConnect in May 2021 for the 9.00 release. It is used for access to IBM Cloud private networks.

Array mode is requested by adding --protocol=array to the command line:

  openconnect --protocol=array vpn.lon.softlayer.com

Quirks and Issues

Currently, OpenConnect only supports basic username/password authentication. If you have access to an Array VPN which uses other types of authentication (e.g. RSA or OATH tokens), please send information to the mailing list so that we add support to OpenConnect.

Connectivity over DTLS is supported, but currently limited to DTLSv1.0 because no known version of the server supports DTLSv1.2. Some operating systems might ban DTLSv1.0 in their default security settings.