Situation: Remote Access VPN users may be unable to connect after SSL/TLS Certificate update, receiving errors similar to the following: 

A screenshot of a cell phone screen with text

Description automatically generated--or--A screenshot of a cell phone

Description automatically generated 

Background: The Cisco AnyConnect Secure Mobility Client SSL/TLS certificate required an update.  This resulted in some clients failing to connect via the Cisco AnyConnect Secure Mobility Client. 

Assessment: A .xml file that retains the expired certificate PIN information must be manually removed in order to affect a successful connection.  This file IS NOT removed by a traditional uninstallation of the Cisco AnyConnect client. 

Recommendation: Locate and rename the “UIW_CONNECT.xml” file; uninstall the Cisco AnyConnect client; restart the device; re-install the Cisco AnyConnect client; connect to the VPN tunnel to test.  Instructions follow -  

 

 

 

 

For Windows 10 Clients 

  1. Uninstall the Cisco AnyConnect Client from the device 

  1. Open Windows File Explorer 

  1. Click “View” and Select “Hidden items” in the “Show/hide” section of the toolbar 

 

  1. Navigate to: C:\ProgramData\Cisco\Cisco AnyConnect Secure Mobility Client\Profile 

  1. Right-click the file “UIW_CONNECT.xml” and select “Rename” from the context-sensitive menu. 

  1. Rename the file “UIW_CONNECT.old”  

  1. Restart the device 

  1. Open an internet browser window (Edge, Chrome, or Firefox) and go to URL https://connect.uiwtx.edu 

  1. Download and install the Cisco AnyConnect client 

  1. From an internet connection that is outside of the UIW network, (Hotspot or away from UIW), launch the Cisco AnyConnect client 

  1. Enter “connect.uiwtx.edu” in the “connect” field and click the “Connect” button 

  1. Authenticate, as prompted 
    *The VPN connection should be established.  Please notify DIUS of any difficulties failures or errors. 

For Mac Clients 

  1. Uninstall the Cisco AnyConnect Client from the device 

  1. Click the “Spotlight Search” icon in the tool bar 

 

  1. Enter the following into the search field: “/opt/cisco/anyconnect/profile” 

  1. Control-click the file “UIW_CONNECT.xml” and select “Rename” from the context-sensitive menu. 

  1. Rename the file “UIW_CONNECT.old” (Authenticate with appropriate permissions, if required) 

  1. Restart the device 

  1. Open an internet browser window (Safari, Chrome, or Firefox) and go to URL https://connect.uiwtx.edu 

  1. Download and install the Cisco AnyConnect client 

  1. From an internet connection that is outside of the UIW network, (Hotspot or away from UIW), launch the Cisco AnyConnect client 

  1. Enter “connect.uiwtx.edu” in the “connect” field and click the “Connect” button 

  1. Authenticate, as prompted 
    *The VPN connection should be established.  Please notify DIUS of any difficulties, failures or errors.