Hello,

Are you doing user authentication ? If yes, please check the tool 
/usr/local/pf/bin/pftest username password you will see if your username bring 
any access settings.

If you check in the /usr/local/pf/logs/packetfence.log you should be able to 
see all the action taken after the radius request.

Thanks,
Ludovic Zammit
[email protected] <mailto:[email protected]> ::  +1.514.447.4918 (x145) ::  
www.inverse.ca <http://www.inverse.ca/>
Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu <http://www.sogo.nu/>) 
and PacketFence (http://packetfence.org <http://packetfence.org/>) 



> On Aug 11, 2017, at 4:13 PM, Sokolowski, Darryl via PacketFence-users 
> <[email protected]> wrote:
> 
> Hi everyone,
> Can anyone help me with this please?
> I have the machine authentication source looking at active directory,  and a 
> rule to assign role and access duration.
> I am able to automatically register the device via machine authentication, 
> but I can’t get the role assigned when it registers.
> On the switch I see 
> %AUTHMGR-5-START: Starting 'dot1x' for client
> %DOT1X-5-SUCCESS: Authentication successful for client
> %AUTHMGR-5-SUCCESS: Authorization succeeded for client
>  
> But the role is not sent.
>  
> Raddebug shows the correct realm is identified and used, and the machine 
> authentication source is defined in the realm.
>  
> In the nodes in packetfence, I see the node is registered with the owner as 
> the machine name but no role is assigned.
>  
> I don’t know what I’m missing.
>  
> Thanks
> Darryl
>  
> ------------------------------------------------------------------------------
> Check out the vibrant tech community on one of the world's most
> engaging tech sites, Slashdot.org <http://slashdot.org/>! 
> http://sdm.link/slashdot_______________________________________________ 
> <http://sdm.link/slashdot_______________________________________________>
> PacketFence-users mailing list
> [email protected] 
> <mailto:[email protected]>
> https://lists.sourceforge.net/lists/listinfo/packetfence-users 
> <https://lists.sourceforge.net/lists/listinfo/packetfence-users>
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to