I have run across something in the PacketFence module for FreeRADIUS and would like to see if anyone can reproduce the behaviour.
When using the PF Perl module for FreeRADIUS in vlan switching mode the user is able to authenticate with any FR supported protocol for registration, at this point PF only listens to the requests and FR is the one actually doing the authentication. However after the client successfully registers and the VLan switch takes place the PF module will reject all requests other than EAP/PEAP type requests. I have a linux laptop set up for TTLS that will not authenticate a registered user, however a guest user that has not yet registered will be able to register fine. The instant I change the auth method to PEAP it works fine. In the log I see a message about a registered user on an insecure SSID, and the module returns VLan -1. Jake Sallee Godfather of Bandwidth Network Engineer University of Mary Hardin-Baylor 900 College St. Belton, Texas 76513 Fone: 254-295-4658 Phax: 254-295-4221 ------------------------------------------------------------------------------ The Next 800 Companies to Lead America's Growth: New Video Whitepaper David G. Thomson, author of the best-selling book "Blueprint to a Billion" shares his insights and actions to help propel your business during the next growth cycle. Listen Now! http://p.sf.net/sfu/SAP-dev2dev _______________________________________________ Packetfence-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/packetfence-users
