On Mar 6, 2014, at 10:20 AM, Tim DeNike <[email protected]> wrote:

> We are on SD 5.3.xyz right now and RADIUS deauth does work.
> 
> Drop this in a file called /usr/local/pf/lib/pf/SNMP/Meru/MC_MCC.pm
> 
> Minus the cut lines obviously.  In switch config, you'll have the option for 
> Meru MC_MCC.  It will do radius de-auths instead of the Telnet/SSH method.  
> Much faster, much lighter weight.

Tim,

Do I have to do anything else to use the code that you provided?  I
dropped it in my PF 3.6 system in the path you specified, checked the
file permissions, and restarted all PF services.  When I checked in the
GUI switch configuration, "Meru MC_MCC" did not show up as an available
type.  I manually edited switches.conf, changing "Meru::MC" to 
"Meru::MC_MCC" for both Meru controllers, set both to "Radius" deauth
and restarted all PF services again, but a registration change still
would not be forced to the client.  Another fire popped up, so I had to
fall back to the original config and couldn't dig any deeper.

When I was looking at the logs, I noticed that the *original* deauth
code is throwing this error with Meru's 5.3 firmware:

Mar 11 13:21:07 pfcmd_vlan(3289) ERROR: Unable to deauthenticate 
aa:bb:cc:6a:17:43: Command response matched device error string at 
/usr/local/pf/lib/pf/SNMP/Meru.pm line 207 
(pf::SNMP::Meru::deauthenticateMacDefault)

Mar 11 13:21:07 pfsetvlan(2) WARN: Problem trying to run command: 
/usr/local/pf/bin/pfcmd_vlan -deauthenticate -switch 10.x.y.z -mac 
aa:bb:cc:6a:17:43 called from handleTrap. Child exited with non-zero value 255 
(pf::util::pf_run)

I suspected that there was something funky with deauth since we did the
Meru 5.3 upgrade a few weeks ago, and even checked to make sure that
the SSH tokens didn't get changed for the PF user.  Hence, the new-found
urgency to get the RADUIS deauth working while I still have a few days
of spring break left...

-Arthur

-------------------------------------------------------------------------
Arthur Emerson III                 Email:      [email protected]
Network Administrator              InterNIC:   AE81
Mount Saint Mary College           MaBell:     (845) 561-0800 Ext. 3109
330 Powell Ave.                    Fax:        (845) 562-6762
Newburgh, NY  12550                SneakerNet: Aquinas Hall Room 11


------------------------------------------------------------------------------
Learn Graph Databases - Download FREE O'Reilly Book
"Graph Databases" is the definitive new guide to graph databases and their
applications. Written by three acclaimed leaders in the field,
this first edition is now available. Download your free book today!
http://p.sf.net/sfu/13534_NeoTech
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to