Hello Fabrice,

Thank you ! I spend a lot of time for just a little parameter... It is now 
working as expected for me.

Thank you very much.


Cordialement,

[https://storage.letsignit.com/624c51cf094e5e3f78935fd1/logo_624c51cf094e5e3f78935fd1_328e9f4a4e1f487575df763fb6c45e5c.png]

MACC

Julien

DEJEAN

Administrateur systèmes et réseaux

Service Informatique

T.<tel:+33(0)549025576>

 <tel:+33(0)549025576>

+33 (0)5 49 02 55 76<tel:+33(0)549025576>




De : Fabrice Durand <oeufd...@gmail.com>
Envoyé : mardi 13 décembre 2022 18:16
À : packetfence-users@lists.sourceforge.net
Cc : Julien Dejean <jdej...@macc.fr>
Objet : Re: [PacketFence-users] issue with re-authentification after portal 
validation

Hello Julien,

it looks that you enabled "Deauth on previous switch" in the switch 
configuration for 172.16.252.100 (packetfence side).
Disable it and retry.
Regards
Fabrice


Le lun. 12 déc. 2022 à 08:55, Julien Dejean via PacketFence-users 
<packetfence-users@lists.sourceforge.net<mailto:packetfence-users@lists.sourceforge.net>>
 a écrit :
Hello,

I configured packetfence for 802.1x, but for th mac using the portal i still 
have an issue to change vlan after portal authentification.
I use an cisco sg300, with snmp for reauthentification. I used the 
configuration for this type of switch from 
https://www.packetfence.org/doc/PacketFence_Network_Devices_Configuration_Guide.html#_cisco_small_business_smb<https://m365.eu.vadesecure.com/safeproxy/v4?f=89l69FjmAV6pgTmwzn6Z_Yj1CjuDVxZlFXJlLiwQVFg8HYd33YnVYCBaT9wGfqxD&i=MYkdbMFZVKadbACJkqlVGtvoUbr_O8fDADirIITRsRUktDTCmzaMimxyXmSlezyhwzuasNL0Iys-xS9-8IFfQw&k=QIpA&r=eT5wZv4FEgydJMeWYaSMSZp4qAzmk5Z8q2C6RJp1wBo&s=c2405cef91b196ebb0067edc195903fae337dab8699754595dbb92b964d83b8a&u=https%3A%2F%2Fwww.packetfence.org%2Fdoc%2FPacketFence_Network_Devices_Configuration_Guide.html%23_cisco_small_business_smb>

But when i succesful login on the portal nothing seems to appears between 
packetfence and the switch. I made a tcpdump trace but no traffic...
If i disconnect the wired cable and reconnect it it's ok, the vlan was changed. 
It ssems that the connection switch to packetfence is ok but no traffic from 
packetfence to the switch...

I checked logs :

Dec 12 11:45:41 packetfence auth[5127]: Adding client 
172.16.252.100/32<http://172.16.252.100/32>
Dec 12 11:45:41 packetfence auth[5127]: (21818) Login OK: [54ee7556475a] (from 
client 172.16.252.100/32<http://172.16.252.100/32> port 51 cli 
54:ee:75:56:47:5a)
Dec 12 11:45:41 packetfence httpd.aaa-docker-wrapper[1936]: httpd.aaa(7) INFO: 
[mac:54:ee:75:56:47:5a] handling radius autz request: from switch_ip => 
(172.16.252.100), connection_type => Ethernet-NoEAP,switch_mac => 
(80:e8:6f:b8:bc:1a), mac => [54:ee:75:56:47:5a], port => 51, username => 
"54ee7556475a" (pf::radius::authorize)
Dec 12 11:45:41 packetfence httpd.aaa-docker-wrapper[1936]: httpd.aaa(7) INFO: 
[mac:54:ee:75:56:47:5a] (172.16.252.100) Added VLAN 4 to the returned RADIUS 
Access-Accept (pf::Switch::returnRadiusAccessAccept)
Dec 12 11:45:41 packetfence httpd.aaa-docker-wrapper[1936]: httpd.aaa(7) WARN: 
[mac:54:ee:75:56:47:5a] No parameter registrationRole found in 
conf/switches.conf for the switch 172.16.252.100 (pf::Switch::getRoleByName)
Dec 12 11:46:13 packetfence httpd.portal-docker-wrapper[3205]: 
httpd.portal(371) WARN: [mac:54:ee:75:56:47:5a] previous location log entry not 
found for and 54:ee:75:56:47:5a 172.16.252.100 
(pf::enforcement::_vlan_reevaluation)

I don't where i can get more information on logs. Could you please give me some 
help ?


Regards



Cordialement,

[https://storage.letsignit.com/624c51cf094e5e3f78935fd1/logo_624c51cf094e5e3f78935fd1_4d3e7529ba043510ee9c19c34deca231.png]

MACC

Julien

DEJEAN

Administrateur systèmes et réseaux

Service Informatique

T.<tel:+33(0)549025576>

 <tel:+33(0)549025576>

+33 (0)5 49 02 55 76<tel:+33(0)549025576>

9, Rue Des Frères Lumière

86100

CHATELLERAULT

-



France



www.macc.fr<https://m365.eu.vadesecure.com/safeproxy/v4?f=I30vCPenJMda4Vp6v3-pYvuX8NXbTCip3BHcMjb-h5-vvSRiFswVpd9fZcaId1k7&i=rlv_Q7WkaDik7LtJBtAhkF2_whNN1yMkWjlXKZaLxH9b6_GDOhZcySMBCD52OKrYX8W6pCdIDheRodLB8vPkVA&k=fLsU&r=CU0Dsiihus7ZZnJJc8yA_boJJd0tAqhEgiwbF9XJiOQ&s=79d85ee1f5afa1f2d065b58ca8a8ed4b1cc62fcee242c1300c711214ecd9b403&u=https%3A%2F%2Fcloud.letsignit.com%2Fcollect%2Fbc%2F626fdf0f7211c0b9b0c95427%3Fp%3D2OoXpcDvFOwaHD9-VRtS8YUosrJ6FSC_ZOPx8d380SZ8zOL6951EcBpA0uwWgX-_i39WCbfA_rVrRusqMfjWrUG6lJlqg11ctSGr93-zMfqTgo0MbChS3VGMeFTwCEhT>


_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net<mailto:PacketFence-users@lists.sourceforge.net>
https://lists.sourceforge.net/lists/listinfo/packetfence-users<https://m365.eu.vadesecure.com/safeproxy/v4?f=QSKQASX7xB9Pv0RRIj6qZEgwXHgV2usIDRogKtdVvH7y2CpxpoWLqy_BIUcS8cP0&i=nWrZTeQ2RS9bcZjXd8ifOiN7EWe-2BBjMT1CNrRfD1-dnZPhP4Aq_VmqrdDmD8wtn70GiKfLfzhLg6DZtEyjhQ&k=ZPrG&r=FBhaD33MLxk9AzyOv-x2pLlg6C-oG_hayr7O0ksAgq4&s=000fa99db42a66618c0296f2c87d5b79fb2af7aa4ab33b8940ea78a3437d16e5&u=https%3A%2F%2Flists.sourceforge.net%2Flists%2Flistinfo%2Fpacketfence-users>
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to