Edit /usr/local/pf/conf/radiusd/packetfence-tunnel # Uncomment the following line to enable local PEAP authentication
packetfence-local-auth You need to change bcrypt passwords to plaintext or ntlm in configuration#configuration/main/advanced Tomasz Karczewski Administrator Sieci tkarczew...@man.olsztyn.pl http://www.man.olsztyn.pl http://www.uwm.edu.pl tel. (89) 523 45 55 fax. (89) 523 43 47 Ośrodek Eksploatacji i Zarządzania Miejską Siecią Komputerową OLMAN w Olsztynie Uniwersytet Warmińsko-Mazurski w Olsztynie From: Extra Noise via PacketFence-users <packetfence-users@lists.sourceforge.net> Sent: Friday, January 15, 2021 11:36 AM To: packetfence-users@lists.sourceforge.net Cc: Extra Noise <z...@live.de> Subject: [PacketFence-users] Use PF as 802.1x Radius for Wifi authentication with Vlan assignment fails. Hi, I would like to use PF as a Radius for wifi authentication. I created two internal users and set the PF as radius in our wifi. Also, I created a connection profile which should automatically register devices an I set the filter to all Accesspoints. When I try now to connect a notebook or smartphone with the wifi, and put the credentials in, that I get the error "can't connect with this wifi". On the PF site I can see the Radius log entry reject with the reason "mschap: Program returned code (1) and output 'Reading winbind reply failed! (0xc0000001)'" Is it not so, that when pf complains about winbin that it doesn't look at all in the internal user db? My goal is, to create 3 different user, which all will get different vlans. That when i will authenticate with user 1 i will get vlan 1 over wifi and user 2 will get vlan 2 and so on. Maybe my approach was completely wrong? Or I missed something somewhere?
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ PacketFence-users mailing list PacketFence-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/packetfence-users