Le 07/10/2014 16:45, Fabrice DURAND a écrit :
> Hello Denis,
Hello Fabrice,
> can you try that:
>
> ./pftest authentication denis.bonnenfant password
>
> and see if the user match a source and a rule ?
>
radius:~# /usr/local/pf/bin/pftest authentication denis.bonnenfant password
Testing authentication for "denis.bonnenfant"
Authenticating against local
Authentication FAILED against local (Unable to authenticate
successfully using SQL.)
Did not match against local
Authenticating against file1
Authentication FAILED against file1 (Unable to validate credentials
at the moment)
Did not match against file1
Authenticating against sms
Authentication FAILED against sms ()
Matched against sms
set_role : guest
set_access_duration : 1D
Authenticating against email
Authentication FAILED against email ()
Matched against email
set_role : guest
set_access_duration : 1D
Authenticating against sponsor
Authentication FAILED against sponsor ()
Matched against sponsor
set_role : guest
set_access_duration : 1D
Authenticating against null
Authentication SUCCEEDED against null (Successful authentication
using null source.)
Did not match against null
Authenticating against se3_utilisateurs
Authentication FAILED against se3_utilisateurs (Invalid login or
password)
Matched against se3_utilisateurs
set_role : mobiles_profs
set_unreg_date : 2019-12-31
It is quite strange, it says it failed, but matches the rule.
Logs :
Oct 07 17:58:43 pftest(15628) ERROR: unable to read password file
'/usr/local/pf/conf/admin.conf'
(pf::Authentication::Source::HtpasswdSource::authenticate)
Oct 07 17:58:43 pftest(15628) INFO: Matched rule (catchall) in source
sms, returning actions. (pf::Authentication::Source::match)
Oct 07 17:58:43 pftest(15628) INFO: Matched rule (catchall) in source
email, returning actions. (pf::Authentication::Source::match)
Oct 07 17:58:43 pftest(15628) INFO: Matched rule (catchall) in source
sponsor, returning actions. (pf::Authentication::Source::match)
Oct 07 17:58:43 pftest(15628) WARN: [se3_utilisateurs] User
uid=denis.bonnenfant,ou=People,dc=diderot,dc=org cannot bind from
dc=diderot,dc=org on 172.16.3.10:389
(pf::Authentication::Source::LDAPSource::authenticate)
Oct 07 17:58:43 pftest(15628) INFO: [se3_utilisateurs profs] Found a
match (uid=denis.bonnenfant,ou=People,dc=diderot,dc=org)
(pf::Authentication::Source::LDAPSource::match_in_subclass)
Oct 07 17:58:43 pftest(15628) INFO: Matched rule (profs) in source
se3_utilisateurs, returning actions. (pf::Authentication::Source::match)
------------------------------------------------------------------------------
Meet PCI DSS 3.0 Compliance Requirements with EventLog Analyzer
Achieve PCI DSS 3.0 Compliant Status with Out-of-the-box PCI DSS Reports
Are you Audit-Ready for PCI DSS 3.0 Compliance? Download White paper
Comply to PCI DSS 3.0 Requirement 10 and 11.5 with EventLog Analyzer
http://pubads.g.doubleclick.net/gampad/clk?id=154622311&iu=/4140/ostg.clktrk
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users