Hello Pierre-Alexis,

The logs doesn’t seems to match the configuration of your source.
I see requests to find 
“(&(|(sAMAccountName=GROUPE-STURNO\psanson)(servicePrincipalName=GROUPE-STURNO\psanson)))”
 but servicePrincipalName is not defined
In Auth-Sturno according to your configuration. I supposed you copied wrong 
logs or configuration.

Your issue is certainly caused by the fact that you don’t strip username for 
RADIUS authorization. Consequently, PacketFence search a sAMAccountName in your 
AD with a wrong format (‘GROUPE-STURNO\username’ in place of ‘username’).

Try this:
- create a REALM called GROUPE-STURNO mapped to your AD
- enable all strip options for that REALM
- restart RADIUS services
- remove realms configuration on Auth-Sturno source
- try again

If you just want to validate your source is correctly configured, try that:
#v+
/usr/loca/pf/bin/pftest authentication psanson ‘your_password’ Auth-Sturno
#v-


Nicolas Quiniou-Briand
Product Support Engineer

[cid:image001.png@01D74E1A.1FA2D400]


Office: +33156696210

Akamai Technologies
145 Broadway
Cambridge, MA 02142


Connect with Us:

[cid:image002.jpg@01D74E1A.1FA2D400]<https://community.akamai.com/> 
[cid:image003.png@01D74E1A.1FA2D400] <http://blogs.akamai.com/>  
[cid:image004.png@01D74E1A.1FA2D400] <https://twitter.com/akamai>  
[cid:image005.png@01D74E1A.1FA2D400] 
<http://www.facebook.com/AkamaiTechnologies>  
[cid:image006.png@01D74E1A.1FA2D400] 
<http://www.linkedin.com/company/akamai-technologies>  
[cid:image007.png@01D74E1A.1FA2D400] 
<http://www.youtube.com/user/akamaitechnologies?feature=results_main>


_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to