Hello all!  I have tried my best to research my problem before posting to
this list. 

 

I am using an HP MSM760 wireless controller with about 35 Access Points in a
public school.  I am hoping to use PacketFence to allow three classes of
users:  Staff, Student, and Guest, which should each be placed in a
different VLAN based on their authentication with Radius, which connects to
our Active Directory.  Encryption on the WLAN isn't a high priority right
now, so MAC-based authentication is just fine for me.  

 

Tailing the log files in /usr/log/pf/logs, below is the output that I see
when I attempt to join an unregistered machine to the test network.  From
what I can tell, it authenticates, Attempts to dump me in to the
registration VLAN, and then quits saying that the action isn't supported on
my hardware.  Am I just SOL?  HP's documentation appears to indicate that
User-assigned VLANs are supported.

 

 

 

==> packetfence.log <==

Jun 29 12:19:30 pf::WebAPI(7921) INFO: handling radius autz request: from
switch_ip => 172.20.254.254, connection_type => Wireless-802.11-NoEAP mac =>
XX:XX:XX:XX:XX:XX, port => 1, username => xxxxxxxxxxxx
(pf::radius::authorize)

Jun 29 12:19:30 pf::WebAPI(7921) INFO: MAC: XX:XX:XX:XX:XX:XX is of status
unreg; belongs into registration VLAN (pf::vlan::getRegistrationVlan)

Jun 29 12:19:31 pf::WebAPI(7921) WARN: Role-based Network Access Control is
not supported on network device type pf::SNMP::HP::Controller_MSM710.
(pf::SNMP::supportsRoleBasedEnforcement)

 

==> admin_access_log <==

127.0.0.1 - webservice [29/Jun/2012:12:19:30 -0500] "POST /webapi HTTP/1.1"
200 845 "-" "SOAP::Lite/Perl/0.710.10"

 

==> packetfence.log <==

Jun 29 12:19:33 pfdhcplistener(7900) INFO: DHCPOFFER from 172.20.1.15
(D1:D1:D1:D1:D1:D1) to host XX:XX:XX:XX:XX:XX (172.20.200.13)
(main::parse_dhcp_offer)

Jun 29 12:19:33 pfdhcplistener(7900) INFO: DHCPOFFER from 172.20.1.14
(D2:D2:D2:D2:D2:D2) to host XX:XX:XX:XX:XX:XX (172.20.100.110)
(main::parse_dhcp_offer)

Jun 29 12:19:33 pfdhcplistener(7900) INFO: DHCPREQUEST from
XX:XX:XX:XX:XX:XX (172.20.200.13) (main::parse_dhcp_request)

Jun 29 12:19:33 pfdhcplistener(7900) INFO: XX:XX:XX:XX:XX:XX requested an
IP. DHCP Fingerprint: OS::100 (Microsoft Windows XP). Modified node with
last_dhcp = 2012-06-29 12:19:33,computername = BobsComputer,dhcp_fingerprint
= 1,15,3,6,44,46,47,31,33,249,43 (main::listen_dhcp)

Jun 29 12:19:33 pfdhcplistener(7900) INFO: DHCPACK from 172.20.1.15
(D1:D1:D1:D1:D1:D1) to host XX:XX:XX:XX:XX:XX (172.20.200.13) for 691200
seconds (main::parse_dhcp_ack)

 

 

Sean Nelson

PC/Network Technician

Camera Corner/Connecting Point

920-272-0150

 

Attachment: smime.p7s
Description: S/MIME cryptographic signature

------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and 
threat landscape has changed and how IT managers can respond. Discussions 
will include endpoint security, mobile security and the latest in malware 
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to