Le 07/10/2014 16:45, Fabrice DURAND a écrit :
> Hello Denis,

Hello Fabrice,
> can you try that:
>
> ./pftest authentication denis.bonnenfant password
>
> and see if the user match a source and a rule ?
>
radius:~# /usr/local/pf/bin/pftest authentication denis.bonnenfant password
Testing authentication for "denis.bonnenfant"

Authenticating against local
   Authentication FAILED against local (Unable to authenticate 
successfully using SQL.)
   Did not match against local

Authenticating against file1
   Authentication FAILED against file1 (Unable to validate credentials 
at the moment)
   Did not match against file1

Authenticating against sms
   Authentication FAILED against sms ()
   Matched against sms
     set_role : guest
     set_access_duration : 1D

Authenticating against email
   Authentication FAILED against email ()
   Matched against email
     set_role : guest
     set_access_duration : 1D

Authenticating against sponsor
   Authentication FAILED against sponsor ()
   Matched against sponsor
     set_role : guest
     set_access_duration : 1D

Authenticating against null
   Authentication SUCCEEDED against null (Successful authentication 
using null source.)
   Did not match against null

Authenticating against se3_utilisateurs
   Authentication FAILED against se3_utilisateurs (Invalid login or 
password)
   Matched against se3_utilisateurs
     set_role : mobiles_profs
     set_unreg_date : 2019-12-31

It is quite strange, it  says it failed, but matches the rule.

Logs :
Oct 07 17:58:43 pftest(15628) ERROR: unable to read password file 
'/usr/local/pf/conf/admin.conf' 
(pf::Authentication::Source::HtpasswdSource::authenticate)
Oct 07 17:58:43 pftest(15628) INFO: Matched rule (catchall) in source 
sms, returning actions. (pf::Authentication::Source::match)
Oct 07 17:58:43 pftest(15628) INFO: Matched rule (catchall) in source 
email, returning actions. (pf::Authentication::Source::match)
Oct 07 17:58:43 pftest(15628) INFO: Matched rule (catchall) in source 
sponsor, returning actions. (pf::Authentication::Source::match)
Oct 07 17:58:43 pftest(15628) WARN: [se3_utilisateurs] User 
uid=denis.bonnenfant,ou=People,dc=diderot,dc=org cannot bind from 
dc=diderot,dc=org on 172.16.3.10:389 
(pf::Authentication::Source::LDAPSource::authenticate)
Oct 07 17:58:43 pftest(15628) INFO: [se3_utilisateurs profs] Found a 
match (uid=denis.bonnenfant,ou=People,dc=diderot,dc=org) 
(pf::Authentication::Source::LDAPSource::match_in_subclass)
Oct 07 17:58:43 pftest(15628) INFO: Matched rule (profs) in source 
se3_utilisateurs, returning actions. (pf::Authentication::Source::match)






------------------------------------------------------------------------------
Meet PCI DSS 3.0 Compliance Requirements with EventLog Analyzer
Achieve PCI DSS 3.0 Compliant Status with Out-of-the-box PCI DSS Reports
Are you Audit-Ready for PCI DSS 3.0 Compliance? Download White paper
Comply to PCI DSS 3.0 Requirement 10 and 11.5 with EventLog Analyzer
http://pubads.g.doubleclick.net/gampad/clk?id=154622311&iu=/4140/ostg.clktrk
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to