Hi Nicolas Quiniou-Briand,

I can give this a try. But do I need to change anything? Or leave as
default? My guess would be as below:

[machine]
filter = node_info
attribute = machine_account
operator = defined
*value = Trusted-Machine*

[EthernetEAP]
filter = connection_type
operator = is
value = Ethernet-EAP

#### Refuse User Auth without machine Auth ####

[12:EthernetEAP&!machine]
scope = RegisteredRole
role = REJECT

[13:EthernetEAP&!machine]
scope = RegistrationRole
role = REJECT

Best regards

On Thu, 6 Dec 2018 at 08:59, Nicolas Quiniou-Briand via PacketFence-users <
packetfence-users@lists.sourceforge.net> wrote:

> Hello Wifi
>
> On 2018-12-06 9:39 a.m., Wifi Guy via PacketFence-users wrote:
> > Excuse my ignorance but I dont understand the context of this? Im not
> > sure what VLAN filter does?
>
> See
>
> https://packetfence.org/doc/PacketFence_Installation_Guide.html#_vlan_filter_definition
>
> VLAN filters will be process when PF receive a RADIUS request before
> doing other tasks.
>
> You can see how PF deal with VLAN filters in packetfence.log.
> --
> Nicolas Quiniou-Briand
> n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
> Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence
> (https://packetfence.org) and Fingerbank (http://fingerbank.org)
>
>
> _______________________________________________
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to