I went through all the configurations again. And now: - I am not longer having the dialog box prompted for authentication - The switch is no longer showing log for failed authentication and it is no longer putting the interface in the registration VLAN - And I can see from the web management interface of packetfence that the MAC address of the computers are stored.
Le sam. 14 nov. 2020 à 07:57, Boris Ebwanga <[email protected]> a écrit : > Hello Ludovic > I have done all that already. But it is still not working. > > Le ven. 13 nov. 2020 à 18:45, Ludovic Zammit <[email protected]> a > écrit : > >> Hello Boris, >> >> For that one it’s ver obvious: >> >> Rejected: User-Name contains whitespace >> >> Do you have a connection profile that matches either SSID, Connection >> type 802.1x wired or wireless? If no create one. >> >> On that same profile, enable the auto registration and attach an LDAP >> source on that profile. >> >> Make sure to configure your DEFAULT and NULL realm to your ad domain. >> >> Don’t to forget to restart radius once joined. >> >> Thanks, >> >> >> Ludovic [email protected] :: +1.514.447.4918 (x145) :: >> www.inverse.ca >> Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence >> (http://packetfence.org) >> >> >> >> >> >> On Nov 13, 2020, at 9:25 AM, Boris Ebwanga via PacketFence-users < >> [email protected]> wrote: >> >> Hello everyone! >> I have set up vlan enforcement with packetfence. I am in a virtual >> environment (gns3 and vmware). >> I have been trying to perform authentication of my windows 10 client >> connected to a switch (cisco iosvL2) but it won't work, yet I provide the >> correct credentials. >> My authentication source is a Samba AD. >> >> Following are the logs from radius.log. (The VLAN 102 returned there is >> my registration VLAN) >> Can any body help me understand what could be the issue ? I am available >> in need for additional information >> >> [mac :00:0c:29:75:cd:22] Rejected user: John Doe >> (16) Login incorrect (Rejected: User-Name contains whitespace): [John >> Doe] (from client 192.168.121.50/32 po...75:cd:22) >> [mac :00:0c:29:75:cd:22] Accepted user: and returned VLAN 102 >> (17) Login OK: [000c2975cd22] (from client 192.168.121.50/32 port 50201 >> cli 00:0c:29:75:cd:22) >> Adding client 192.168.121.50/32 >> (59) Invalid user (Rejected: User-Name contains whitespace): [John Doe] >> (from client 192.168.121.50/32 po...75:cd:22) >> [mac :00:0c:29:75:cd:22] Rejected user: John Doe >> (59) Login incorrect (Rejected: User-Name contains whitespace): [John >> Doe] (from client 192.168.121.50/32 po...75:cd:22) >> [mac :00:0c:29:75:cd:22] Accepted user: and returned VLAN 102 >> Login OK: [000c2975cd22] (from client 192.168.121.50/32 po...75:cd:22) >> (79) mschap: ERROR: Program returned code (1) and output 'Reading winbind >> reply failed! (0xc0000001)' >> (79) Login incorrect (mschap: Program returned code (1) and output >> 'Reading winbind reply failed! (0xc0000...S tunnel) >> [mac:00:0c:29:cc:e9:31] Rejected user: Ebwanga >> (80) Login incorrect (eap_peap: The users session was previously >> rejected: returninng reject (again.)): [Ebwa...cc:e9:31) >> [mac:00:0c:29:cc:e9:31] Accepted user: and returned VLAN 102 >> (81) Login OK: [000c29cce931] (from client 192.168.121.50/32 port 50201 >> cli 00:0c:29:cc:e9:31) >> _______________________________________________ >> PacketFence-users mailing list >> [email protected] >> https://lists.sourceforge.net/lists/listinfo/packetfence-users >> >> >>
_______________________________________________ PacketFence-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/packetfence-users
