hi list, I'd like to understand external portal authenticate and authorize workflow,
in my test environment, I use PF + AC + AP + ActiveDirecroty, I know: 1. DC redirect http request to portal, 2. User input username and pass, 3. captive-portal authenticate with AD, 4. then send COA/DM to AC. but which step make AC to allow client connect to internet ? some webpages(not PF) say portal will send username and passwd to AC, then AC authenticate to PF radius radius response to AC and tell AC to assign a VLAN to the client mac. but I don't think PF work in this way, since portal already auth user with AD, I read some code, didn't see portal will send username to AC, just saw it will send DM to AC (only reassign vlan for wired switches) thanks!
_______________________________________________ PacketFence-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/packetfence-users
