Hi David,
You should be able to do this from the sources and roles sections of the Web 
GUI.

Create a Role for each Vlan group.
Assign the role the vlan ID within the switches section of the web GUI

Create a source for your AD server(s).
Then inside the source, create a Rule with the following logic:

If ANY of the following conditions are met:
                memberOf | is member of | VLAN10
Perform the following actions:
                Set role | VLAN10

Cheers,
Andi

From: rewt rewt [mailto:[email protected]]
Sent: 17 July 2014 11:59
To: [email protected]
Subject: [PacketFence-users] RADIUS+Dynamic Vlan Assignment based on AD

Dear All,
I am currently using NAP (Windows) for dynamic VLAN assignment over EAP/802.1x 
based on active directory groups.

For example:
If user john is in group "Vlan 10" he will be in the VLAN 10.

I would love to move to PacketFence! but i can't find any clear documentation 
on how to suceed.

I have several questions:

- Is it possible to do that with PacketFence ?
- Is it possible to do that kind of configuration 100% from the WebUI ?
- Could you describe a quick process on how to suceed


Thank you!

Kind regards,

David R
------------------------------------------------------------------------------
Want fast and easy access to all the code in your enterprise? Index and
search up to 200,000 lines of code with a free copy of Black Duck
Code Sight - the same software that powers the world's largest code
search on Ohloh, the Black Duck Open Hub! Try it now.
http://p.sf.net/sfu/bds
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to