Hello Fabrice
How I tag two vlans (130, 131) in one port? Maybe I misunderstand your post.
Default is native vlan 1 on cisco switch. I changed native vlan to 130 and
131 but the same. Then switch port that connected AP changed to access port
(130, 131), the result is still the same.
I've not Cisco WLC or any other WLAN controller.
Is it possible PFence integrate with cisco AP without WLC?
And what is meaning this info "doWeActOnThisTrap returns false. Stop
dot11Deauthentication handling (main::handleTrap)"?
Can you advise me detailed explanation about config of Switch or AP. I
already tried PFence Network Device Configuration Guide.
Sorry for the inconvenience.
# more /usr/local/pf/logs/packetfence.log
Jan 29 05:13:17 httpd.aaa(15634) INFO: [mac:34:4d:f7:4a:dc:5f] handling
radius autz request: from switch_ip => (10.0.0.2), connection_type =>
Wireless-802.11-NoEAP,switch_mac => (00:3a:98:1e:c6:20), mac =>
[34:4d:f7:4a:dc:5f], port => 722, username => "344df74adc5f", ssid =>
PacketFence-Public (pf::radius::authorize)
Jan 29 05:13:17 httpd.aaa(15634) INFO: [mac:34:4d:f7:4a:dc:5f] Instantiate
profile default (pf::Portal::ProfileFactory::_from_profile)
Jan 29 05:13:17 httpd.aaa(15634) INFO: [mac:34:4d:f7:4a:dc:5f] is of status
unreg; belongs into registration VLAN (pf::role::getRegistrationRole)
Jan 29 05:13:17 httpd.aaa(15634) INFO: [mac:34:4d:f7:4a:dc:5f] (10.0.0.2)
Added VLAN 130 to the returned RADIUS Access-Accept
(pf::Switch::returnRadiusAccessAccept)
Jan 29 05:13:20 pfsetvlan(3) INFO: nb of items in queue: 1; nb of threads
running: 0 (main::startTrapHandlers)
Jan 29 05:13:20 pfsetvlan(3) INFO: doWeActOnThisTrap returns false. Stop
dot11Deauthentication handling (main::handleTrap)
Jan 29 05:13:20 pfsetvlan(3) INFO: finished (main::cleanupAfterThread)
Jan 29 05:13:20 pfsetvlan(5) INFO: nb of items in queue: 1; nb of threads
running: 0 (main::startTrapHandlers)
Jan 29 05:13:20 pfsetvlan(5) INFO: doWeActOnThisTrap returns false. Stop
dot11Deauthentication handling (main::handleTrap)
Jan 29 05:13:20 pfsetvlan(5) INFO: finished (main::cleanupAfterThread)
# more /usr/local/pf/logs/radius.log
Sun Jan 29 05:13:17 2017 : Info: rlm_rest (rest): Closing connection (37):
Hit idle_timeout, was idle for 3244 seconds
Sun Jan 29 05:13:17 2017 : Info: rlm_rest (rest): Closing connection (38):
Hit idle_timeout, was idle for 3244 seconds
Sun Jan 29 05:13:17 2017 : Info: rlm_rest (rest): Opening additional
connection (39), 1 of 64 pending slots used
Sun Jan 29 05:13:17 2017 : Info: rlm_rest (rest): Need 2 more connections to
reach 10 spares
Sun Jan 29 05:13:17 2017 : Info: rlm_rest (rest): Opening additional
connection (40), 1 of 63 pending slots used
Sun Jan 29 05:13:17 2017 : Info: rlm_sql (sql): Closing connection (38): Hit
idle_timeout, was idle for 3244 seconds
Sun Jan 29 05:13:17 2017 : Info: rlm_sql (sql): Closing connection (39): Hit
idle_timeout, was idle for 3244 seconds
Sun Jan 29 05:13:17 2017 : Info: rlm_sql (sql): Opening additional
connection (40), 1 of 64 pending slots used
Sun Jan 29 05:13:17 2017 : Info: rlm_sql (sql): Need 2 more connections to
reach 10 spares
Sun Jan 29 05:13:17 2017 : Info: rlm_sql (sql): Opening additional
connection (41), 1 of 63 pending slots used
Sun Jan 29 05:13:17 2017 : [mac:34:4d:f7:4a:dc:5f] Accepted user: and
returned VLAN 130
Sun Jan 29 05:13:17 2017 : Auth: (17) Login OK: [344df74adc5f] (from client
10.0.0.2 port 722 cli 34:4d:f7:4a:dc:5f)
Regards,
Namjil
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, SlashDot.org! http://sdm.link/slashdot
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users