Hello Adrian,

On 2019-04-24 11:56 a.m., Adrian Dessaigne via PacketFence-users wrote:
For RADIUS authentication of a Non-EAPOL host MAC address, the switch generates a <username, password> pair as follow:
  -The username is the Non-EAPOL MAC address in string format.
 -The password is a string that combines the MAC  address, switch IP address, unit and port.

Is this behavior configurable ? Some vendors allow you to configure such format. If possible try to set:
* Username = MAC address
* User Password = MAC address

So I went in the PF Switch configuration tab and defined CLI access for this switch. I then created an Admin role with the action "Switch CLI - Read" and "Switch CLI - Write". On all my authentication source, I added and Administration rule which set to the one I've created. Even with this configuration, I still have the same error "CLI Access is not allowed by PacketFence on this switch". Does it mean the module do not support CLI ?

You don't need to do that. CLI access is when you want to allow CLI access to your network devices (for administrators).
--
Nicolas Quiniou-Briand
[email protected]  ::  +1.514.447.4918 *140  ::  https://inverse.ca
Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence (https://packetfence.org) and Fingerbank (http://fingerbank.org)


_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to