Le 18-11-14 à 02 h 42, Amjad Ali a écrit :
Thank you Fabrice, that clears a lot many things, I just confirmed as you explained and it works great. Just to further understand the above config, the PacketFence still uses the internal radius to communicate all the stuff with switch. That is, local authentication is achieved with the help of built-in radius of PacketFence.
Yes exactly

Thanks
Ali

On Wed, Nov 14, 2018 at 11:54 AM Durand fabrice <fdur...@inverse.ca <mailto:fdur...@inverse.ca>> wrote:

    Hello Ali ,

    ok so no need to create a Radius Authentication source.

    What you just need to do is the following:

    be sure that the password encryption is nthash or cleartext.

    uncomment packetfence-local-auth

    create a connection profile with a filter like SSID = my_SSID

    and select the source local.


    Then create your switch on the PacketFence side with the same
    shared secret (pf and switch side).

    Create users in the user tab and assign them the correct role and
    access duration.

    And you will be good.

    Regards

    Fabrice


    Le 18-11-13 à 22 h 35, Amjad Ali a écrit :
    Hi Durand,

    Much appreciate the quick response, actually our use case is such
    that we want to authenticate clients directly against PF/Radius,
    without going to portal. For that I have uncommented the
    /packetfence-local-auth/in
    */usr/local/pf/conf/radiusd/packetfence-tunnel*
    *
    *
    *You think that makes sense?*
    *
    *
    *Thanks,*
    *Ali*

    On Wed, Nov 14, 2018 at 11:12 AM Durand fabrice via
    PacketFence-users <packetfence-users@lists.sourceforge.net
    <mailto:packetfence-users@lists.sourceforge.net>> wrote:

        Hello Ali,

        In Radius source timeout will be the time you allow the
        radius source to answer and shared secret is the shared
        secret between the pf and the radius server.

        Btw the Radius source is a way to do the authentication on
        the portal.

        Shared secret in the switch config is the shared secret
        between the switch (you defined it in the switch
        configuration) and Packetfence.

        Regards

        Fabrice


        Le 18-11-13 à 21 h 59, Amjad Ali via PacketFence-users a écrit :
        Hi All,

        When setting up internal radius in PF, whats the purpose of
        Timeout and Secret?
        Secondly when we add a switch there is a Radius tab where we
        put Secret key, whats the relations between these two keys?
        Why is secret added in two different places?

        Thanks
        Ali

-- Amjad Ali


        _______________________________________________
        PacketFence-users mailing list
        PacketFence-users@lists.sourceforge.net  
<mailto:PacketFence-users@lists.sourceforge.net>
        https://lists.sourceforge.net/lists/listinfo/packetfence-users
        _______________________________________________
        PacketFence-users mailing list
        PacketFence-users@lists.sourceforge.net
        <mailto:PacketFence-users@lists.sourceforge.net>
        https://lists.sourceforge.net/lists/listinfo/packetfence-users



-- Amjad Ali



--
Amjad Ali

--
Fabrice Durand
fdur...@inverse.ca ::  +1.514.447.4918 (x135) ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence 
(http://packetfence.org)

_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to