Aviatrix VPN Client

Aviatrix VPN Client 3.0.2

Release Date: August 4, 2026

New Features in Aviatrix VPN Client Release 3.0.2

The Aviatrix VPN Client is available on Windows, macOS, and Ubuntu, and supports SAML-based authentication (including Okta, Duo, and other SAML identity providers) alongside FIPS 140-3 compliant encryption.

Universal binary for macOS. The macOS installer is now a Universal binary that runs natively on both Intel and Apple Silicon (ARM64) Macs. Rosetta 2 is no longer required. This change ensures the client continues to work on macOS releases that remove Rosetta 2 support.

Version 3.0.2 also delivers security hardening, along with UI, logging, and packaging refinements across Windows, macOS, and Ubuntu.

Additional Upgrade Considerations for FIPS Deployments in Release 3.0.2

If you plan to run the FIPS build of Aviatrix VPN Client 3.0.2, verify that your VPN gateway’s UserVPN CA uses an RSA key of at least 2048 bits before you upgrade the client. The FIPS 140-3 validated cryptographic module does not accept RSA keys shorter than 2048 bits, so a client running the FIPS build cannot verify a gateway server certificate that chains to a 1024-bit CA.

This applies to VPN gateways on Controller versions earlier than 8.2, and to VPN gateways on Controller 8.2 whose UserVPN CA has not been rotated since the Controller was upgraded. Controllers originally initialized on Aviatrix version 7.1 or earlier generated the UserVPN CA with a 1024-bit RSA key; the CA is preserved across upgrades to avoid disrupting active UserVPN users, so a Controller upgrade alone does not change the key size.

To bring the UserVPN CA up to a FIPS 140-3 compliant key size, rotate it to at least RSA 2048-bit before upgrading the VPN Client. Follow the CA Certificate Rotation of UserVPN procedure, which describes both a simple rotation and a staged rotation for deployments with active UserVPN users.

Issues Corrected in Aviatrix VPN Client Release 3.0.2

  • AVX-73334 - Fixed an issue where earlier Aviatrix VPN Client versions could not connect to a VPN gateway after the gateway image was upgraded to Controller 9.0 with FIPS 140-3 enabled, and returned AUTH_FAILED — client incompatible with this server on connect. VPN Client 3.0.2 restores connectivity to FIPS 140-3-enabled VPN gateways on Controller 9.0.

Known Issues

AVX-78411 - (macOS) Transient DNS changes may cause the VPN client’s watchdog process to restart the entire VPN tunnel instead of repairing DNS in place.

Ubuntu Version Support in Aviatrix VPN Client Release 3.0.2

  • The VPN Client supports Ubuntu 22.04, 24.04, and 26.04.

  • Support for Ubuntu 20.04 has been deprecated.

Aviatrix VPN Client 2.17.7

Release Date: 10 Jan 2024

Enhanced Features in Aviatrix VPN Client Release 2.17.7

AVX-36015 - (Windows) The latest version of Windows TAP driver 9.24.7 is now included with VPN Client 2.17.7.

Issues Corrected in Aviatrix VPN Client Release 2.17.7

  • AVX-35623 - VPN file names in the local configuration file are now processed as UTF-8 instead of ASCII to support the use of unicode characters in the file names.

  • AVX-39253 - (Windows) Occasionally, the VPN client on a Windows device could fail to connect to the server with the following error: 2023-04-10 17:54:43 MANAGEMENT: Socket bind failed on local address [AF_INET]127.0.0.1:7505: No such file or directory (errno=2).

Known Issues

AVX-46236 - You may see an error while installing the TAP device driver during the installation of the VPN Client 2.17.7 on Windows Server 2012. The Windows Server 2012 may complain that it cannot verify the signature of the TAP Windows driver v9.24.7. To resolve this issue, install an older version of the Windows TAP driver (v9.24.2) manually from this index.

The Aviatrix VPN Client supports Windows 10 and 11, Windows server 2016, and later versions.

Ubuntu Version Support in Aviatrix VPN Client Release 2.17.7

  • The VPN Client now supports Ubuntu 20.04 and 22.04.

  • Support for Ubuntu 18.04 has been deprecated.

Aviatrix VPN Client 2.16.42

Release Date: 02 Feb 2023

  • Prevent connection issues when the existing connection has not completely terminated

  • Update the About window with message to reach out to IT network admin for any issues with VPN client

  • Update OpenSSL version to 1.1.1o for Windows VPN clients

  • VPN client now supports Ubuntu 22.04

  • Support for Ubuntu 16.04 has been deprecated

Issues Corrected in VPN Client 2.16.42

When you set your minimum version client to 2.16.42 under OpenVPN > Advanced > Global Config > Minimum Aviatrix VPN Client Version, Mac and Ubuntu users received an error: “the required minimum VPN client is 2.16.42.” Note that this issue did not affect Windows users.

Aviatrix VPN Client 2.14.14

Release Date: 27 April 2021

  • Support non-ASCII Windows user login account

  • Support non-ASCII VPN connection profile name on the client UI

  • Support Ubuntu 20.04.01 deb format installer

  • Enhance the Windows client security CVE-2021-31776 Enhance the Windows client security