Hello Ali ,

ok so no need to create a Radius Authentication source.

What you just need to do is the following:

be sure that the password encryption is nthash or cleartext.

uncomment packetfence-local-auth

create a connection profile with a filter like SSID = my_SSID

and select the source local.


Then create your switch on the PacketFence side with the same shared secret (pf and switch side).

Create users in the user tab and assign them the correct role and access duration.

And you will be good.

Regards

Fabrice


Le 18-11-13 à 22 h 35, Amjad Ali a écrit :
Hi Durand,

Much appreciate the quick response, actually our use case is such that we want to authenticate clients directly against PF/Radius, without going to portal. For that I have uncommented the /packetfence-local-auth/in */usr/local/pf/conf/radiusd/packetfence-tunnel*
*
*
*You think that makes sense?*
*
*
*Thanks,*
*Ali*

On Wed, Nov 14, 2018 at 11:12 AM Durand fabrice via PacketFence-users <packetfence-users@lists.sourceforge.net <mailto:packetfence-users@lists.sourceforge.net>> wrote:

    Hello Ali,

    In Radius source timeout will be the time you allow the radius
    source to answer and shared secret is the shared secret between
    the pf and the radius server.

    Btw the Radius source is a way to do the authentication on the portal.

    Shared secret in the switch config is the shared secret between
    the switch (you defined it in the switch configuration) and
    Packetfence.

    Regards

    Fabrice


    Le 18-11-13 à 21 h 59, Amjad Ali via PacketFence-users a écrit :
    Hi All,

    When setting up internal radius in PF, whats the purpose of
    Timeout and Secret?
    Secondly when we add a switch there is a Radius tab where we put
    Secret key, whats the relations between these two keys? Why is
    secret added in two different places?

    Thanks
    Ali

-- Amjad Ali


    _______________________________________________
    PacketFence-users mailing list
    PacketFence-users@lists.sourceforge.net  
<mailto:PacketFence-users@lists.sourceforge.net>
    https://lists.sourceforge.net/lists/listinfo/packetfence-users
    _______________________________________________
    PacketFence-users mailing list
    PacketFence-users@lists.sourceforge.net
    <mailto:PacketFence-users@lists.sourceforge.net>
    https://lists.sourceforge.net/lists/listinfo/packetfence-users



--
Amjad Ali
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to