Hi,

On 08/23/2012 01:22 AM, Aniruddha Tungenwar wrote:
> Hi All,
> 
> I am in process of implementing Packetfence, so I need to know whether
> it will work in below scenario.
> 
> -          I have 250+ vlans receives IP addresses from a windows DHCP
> server, so is it possible using packet fence that the non-compliant
> device will be isolated to a separate restricted Vlan and once the
> non-compliance reason is resolved then it should come back to its
> original vlan.    

Yes that's how it works.

> 
> -          Do I need to create a virtual adapter for every vlan on
> packet fence or any other workaround is available.
> 

Only one for management and one for the isolation would be required.
DHCP of all the VLANs will need to be forwarded though. This is best
done by adding a new IP Helper entry in all your VLANs that points to
PacketFence's management IP.

> -          Can I use windows radius server with packetfence.
> 

For authentication? Yes. Just proxy the authentication with small
changes to the FreeRADIUS configuration. I think we have a FAQ entry on
our website that explains how to proxy to Cisco ACS.

Regards,

-- 
Olivier Bilodeau
[email protected]  ::  +1.514.447.4918 *115  ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence
(www.packetfence.org)

------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and 
threat landscape has changed and how IT managers can respond. Discussions 
will include endpoint security, mobile security and the latest in malware 
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to