I have a Role on our SSL VPN for users to login to the webmail function of our mailserver from outside of our firewall. The vendor (Kerio Technologies) has started to use a new webmail client and this is where the trouble starts. The login is set up to use SSO directly into the users mailbox but with the new client I get an alert saying that the session has timed out. In looking in the logs on the mailserver it is reporting that "Attempt to call jsonapi with invalid token'' from IP xxx.xxx.xxx.xxx". You are now in a loop and can only get out of it by logging out of the SSL VPN. Luckly the old client is still available (for now) so we are working around the problem.
Does anyone have any info for this that would point me in the right direction to solve this issue? I am thinking it is web rewrite as I can set it to not rewrite and forward to server and then it will work (from inside the firewall anyway).
Many thanks for any assistance. My forehead is getting very flat from smashing into this wall and I am getting quite frustrated.
I'd try setting up this resource for Pass throgh proxy to see if there is any difference.
Have you tried disabling SSO to see if the problem is still occurring?
You are welcome; good luck!
Please let us know what you find out.
Thanks. I know that many, many here are not using Kerio. I will open a case with JTAC and see if we can track this down.
Turning SSO off does not seem to make any difference.