hi list,
I'd like to understand external portal authenticate and authorize workflow,

in my test environment, I use PF + AC + AP + ActiveDirecroty,

I know:
1. DC redirect http request to portal,
2. User input username and pass,
3. captive-portal authenticate with AD,
4. then send COA/DM to AC.

but which step make AC to allow client connect to internet ?

some webpages(not PF) say portal will send username and passwd to AC,
then AC authenticate to PF radius
radius response to AC and tell AC to assign a VLAN to the client mac.

but I don't think PF work in this way, since portal already auth user with
AD,
I read some code, didn't see portal will send username to AC, just saw it
will send DM to AC (only reassign vlan for wired switches)

thanks!
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to