Hi,

Please help me understand Packetfence philosophy.  I see that you are very 
helpful in the mail list. I just need you to give me some push to the right 
direction :) Let me describe the situation. We have a working network, with a 
windows AD. I prepared a switch for testing (in production mode), with 
isolation, registration, management vlans.
I run Packetfance on a physical machine. I did set up the switch to communicate 
with pcketfence by radius. 
Now, if I connect a notebook to the switch, it is sending the mac address of 
the client to packetfence, then pf sets the port to the registration vlan and 
the client gets and IP address from the registration subnet pool.
I set up pf to our domain network. I set up realm, also I set up source as AD 
validation (first I want to check if user or computer is member of a group or 
member of AD).

My main problem is that can I somehow avoid the registration through captive 
portal? Can the username/password or computer/hostname be used as an 
authentication? I just want to avoid all users to have to manually authenticate 
on the captive portal. Is that possible? I hope yes, as packetfence can query 
the AD domain. Packetfence is also joined to the windows domain.
My next step would be to manage this work on wifi, we have Ruckus AP's with 
zonedirector. (It worked fine with windows NAP) 
Next, How can I set up to check if user is member of group? 
And how can I check state of Firewall, antivirus and so? 
Can I be checked before the access to the network? I just want to avoid logging 
into a captive portal as it takes time for the users! This would remain for 
mobile or guests. We can force users to set 802.1x authentication for the 
network interface it is not a problem. There we can set network authentication 
method like PEAP or EAP-MSCHAP v2. 

Thank you very much, I really need your help here to get familiar with 
packetfence :)




Gábor Barócsi
Network and System Engineer





------------------------------------------------------------------------------
Site24x7 APM Insight: Get Deep Visibility into Application Performance
APM + Mobile APM + RUM: Monitor 3 App instances at just $35/Month
Monitor end-to-end web transactions and take corrective actions now
Troubleshoot faster and improve end-user experience. Signup Now!
http://pubads.g.doubleclick.net/gampad/clk?id=272487151&iu=/4140
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to