Hello.

I have a network with about 200 machines (notebooks), no fixed desk for
workers , 50% are machines that join a domain, the other are workers with
clients provided
machines


My initial idea is isolate (wired) domain machines/network from clients
machines network using PacketFence/Radius, that mean something basic "corp"
and "guest", without
portals.

I play with PF this days unsuccessful (never use PF), I don't even know if
it's possible to do what I want.

what i try is that:

Users in our domain send the radius identification query,  (Windows AD/DC)
get ok, and place in a vlan. (i got that working)

Rest Users going to send the identification,  PF must capture it (Filter by
"not in domain.com") t and accept but in the  guest  vlan without try
identified against the domain.

is that possible? i don't known how to that. Switch always block  due wrong
credentials.

Switch's only support port based identification.


thanks.
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to