Re: [PacketFence-users] Sponsor email validation

2017-08-30 Thread Akala Kehinde via PacketFence-users
Hello Luis,

Your PF server needs to be reachable over the internet.

Regards,
Kehinde

On Wed, Aug 30, 2017 at 3:49 PM, Luís Torres via PacketFence-users <
packetfence-users@lists.sourceforge.net> wrote:

> Hello,
>
>
>
> Im rookie on packetfence configuration. I facing a "problem" regarding the
> sponsor validation email.
>
>
>
> Everything works fine until I receveid ( as a sponsor ) an email to
> validate de guest access. When I hit the but it redirects to an url ( ex
> https://packetfence/activate/email/sponsor/74696188aa93e8abdf64ad1016d796
> 2c )  but it dont work.
>
>
>
> I checked the open ports and I got:
>
>
>
> tcp 0 0 127.0.0.1:443 0.0.0.0:* LISTEN
> tcp 0 0 10.1.2.130:443 0.0.0.0:* LISTEN
> tcp 0 0 10.1.2.130:1443 0.0.0.0:* LISTEN
> tcp 0 0 10.252.2.45:1443 0.0.0.0:* LISTEN
>
>
>
> I manually changed the packetfence url with the 10.1.2.130 but still
> doesnt work...
>
>
>
> Can you point me some directions?
>
>
>
> regards to all
>
> LT
>
> 
> --
> Check out the vibrant tech community on one of the world's most
> engaging tech sites, Slashdot.org! http://sdm.link/slashdot
> ___
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>
>
--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[PacketFence-users] Sponsor email validation

2017-08-30 Thread Luís Torres via PacketFence-users
 

Hello, 

Im rookie on packetfence configuration. I facing a
"problem" regarding the sponsor validation email. 

Everything works
fine until I receveid ( as a sponsor ) an email to validate de guest
access. When I hit the but it redirects to an url ( ex
https://packetfence/activate/email/sponsor/74696188aa93e8abdf64ad1016d7962c
) but it dont work. 

I checked the open ports and I got: 

tcp 0 0
127.0.0.1:443 0.0.0.0:* LISTEN
tcp 0 0 10.1.2.130:443 0.0.0.0:*
LISTEN
tcp 0 0 10.1.2.130:1443 0.0.0.0:* LISTEN
tcp 0 0 10.252.2.45:1443
0.0.0.0:* LISTEN 

I manually changed the packetfence url with the
10.1.2.130 but still doesnt work... 

Can you point me some directions?


regards to all 

LT --
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Unifi IP Accounting

2017-08-30 Thread Fabrice Durand via PacketFence-users
Hello Ian,

it's an option to enable in PacketFence where you update the iplog
information based on the radius accounting.

Regards

Fabrice


Le 2017-08-28 à 23:10, Ian Halliday via PacketFence-users a écrit :
> Hello Listmates,
>
> We just completed a PF install in a routed environment using Ubiquity
> Unifi APs for wireless access. We started with portal authentication,
> but eventually went with 802.1X for the vlan separation. 
>
> One question: should we be seeing the node IP addresses populated
> through Radius accounting data for any non-DHCP host? The IP populates
> correctly in the database radacct table, but its not making it over to
> the ip4log/ipv6 table. I modified the acct_update stored procedure in
> our setup to populate/update that row right away when a valid
> IPv4/IPv6 radius update comes in, but if there is a better way to do
> it, I'm all for it! 
>
> Thanks in advance for any input!
>
> -- Ian
>
>
> --
> Check out the vibrant tech community on one of the world's most
> engaging tech sites, Slashdot.org! http://sdm.link/slashdot
>
>
> ___
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users

-- 
Fabrice Durand
fdur...@inverse.ca ::  +1.514.447.4918 (x135) ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence 
(http://packetfence.org) 

--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] domain trouble shooting commands fail

2017-08-30 Thread Fabrice Durand via PacketFence-users
Hello Jon,

does winbind run ?

Regards

Fabrice



Le 2017-08-28 à 23:19, Jon Falconer via PacketFence-users a écrit :
> Greetings all,
>
> I have done a fresh install of Packet Fence 7.2.0, and in configuring it, 
> have setup an Active Directory domain join. Packet Fence seems to think that 
> the domain join succeeded since it says "Test join succeed!" for the domain 
> (the only domain) configured on the Configuration > Policies and Access 
> Control > Active Directory Domains page. However, when I run the trouble 
> shooting commands listed on page 34 of the Administration Guide for version 
> 7.2.0, I get the following results:
>
> root@pf2:/etc/samba# chroot /chroots/PUCAD/ wbinfo -u
> could not obtain winbind interface details: WBC_ERR_WINBIND_NOT_AVAILABLE
> could not obtain winbind domain name!
> Error looking up domain users
> root@pf2:/etc/samba#
>
> root@pf2:/etc/samba# chroot /chroots/PUCAD/ ntlm_auth --username=joetest
> Password:
> could not obtain winbind separator!
> Reading winbind reply failed! (0x01)
> :  (0x0)
> root@pf2:/etc/samba#
>
> This is all running on Debian 8 with all updates as of mid August 2017.
>
> ---domain.conf---
> root@pf2:/usr/local/pf/conf# cat domain.conf
> [PUCAD]
> ntlm_cache_filter=(&(samAccountName=*)(!(|(lockoutTime=>0)(userAccountControl:1.2.840.113556.1.4.803:=2
> registration=0
> sticky_dc=10.xxx.yyy.zzz
> ou=Computers
> ntlm_cache_batch_one_at_a_time=disabled
> ad_server=10. xxx.yyy.zzz
> dns_name=puc.edu
> ntlm_cache_expiry=3600
> bind_dn=
> workgroup=PUC
> ntlm_cache_batch=disabled
> bind_pass=
> ntlm_cache=disabled
> server_name=%h
> ntlm_cache_on_connection=disabled
> dns_servers=10. xxx.yyy.zzz
> root@pf2:/usr/local/pf/conf#
>
>
> -realm.conf---
> root@pf2:/usr/local/pf/conf# cat realm.conf
> [DEFAULT]
> source=PUC_AD1
> domain=PUCAD
> options=strip
> root@pf2:/usr/local/pf/conf#
>
>
> Any other info needed to diagnose this problem?
>
> Thanks,
>
> Jon
>
> --
> Check out the vibrant tech community on one of the world's most
> engaging tech sites, Slashdot.org! http://sdm.link/slashdot
> ___
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users

-- 
Fabrice Durand
fdur...@inverse.ca ::  +1.514.447.4918 (x135) ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence 
(http://packetfence.org) 


--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[PacketFence-users] Packetfence 7.2.0 Cannot set authentication rules in radius source.

2017-08-30 Thread Tomasz Karczewski via PacketFence-users
Hi,

 

I'm deploying new version of packetfence and when i adding new radius
authentication source and 

set authentication rules I got message "Error! An error condition has
occured. See server side logs for details."

 

Logs from httpd.admin.log are as follows

 

Aug 30 09:01:33 PacketFence-ZEN httpd_admin: httpd.admin(2349) ERROR:
[mac:unknown] Caught exception in
pfappserver::Controller::Config::Source->update "Attribute (timeout) does
not pass the type constraint because: Validation failed for 'Maybe[Int]'
with value  at constructor pf::Authentication::Source::RADIUSSource::new
(defined at /usr/local/pf/lib/pf/Authentication/Source/RADIUSSource.pm line
233) line 136.

 
pf::Authentication::Source::RADIUSSource::new('pf::Authentication::Source::R
ADIUSSource', 'HASH(0x7ffb9b826ae8)') called at
/usr/local/pf/lib/pf/authentication.pm line 121

pf::authentication::newAuthenticationSource('RADIUS', 'source',
'HASH(0x7ffb9b826530)') called at
/usr/local/pf/html/pfappserver/lib/pfappserver/Form/Config/Source.pm line
346

 
pfappserver::Form::Config::Source::get_source('pfappserver::Form::Config::So
urce::RADIUS=HASH(0x7ffb9b6ee2a0)') called at
/usr/local/pf/html/pfappserver/lib/pfappserver/Form/Field/SourceRuleConditio
n.pm line 72

 
pfappserver::Form::Field::SourceRuleCondition::options_attributes('HTML::For
mHandler::Field::Select::16=HASH(0x7ffb9b825ee8)') called at native
delegation method HTML::FormHandler::Field::Select::get_options
(execute_method) of attribute options_method (defined at
/usr/share/perl5/vendor_perl/HTML/FormHandler/Field/Select.pm line 52) line
3

 
HTML::FormHandler::Field::Select::get_options('HTML::FormHandler::Field::Sel
ect::16=HASH(0x7ffb9b825ee8)') called at
/usr/share/perl5/vendor_perl/HTML/FormHandler/Field/Select.pm line 265

 
HTML::FormHandler::Field::Select::_load_options('HTML::FormHandler::Field::S
elect::16=HASH(0x7ffb9b825ee8)') called at
/usr/share/perl5/vendor_perl/HTML/FormHandler/Field/Select.pm line 251

 
HTML::FormHandler::Field::Select::_result_from_input('HTML::FormHandler::Fie
ld::Select::16=HASH(0x7ffb9b825ee8)',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b825ed0)', 'username', 1)
called at /usr/share/perl5/vendor_perl/HTML/FormHandler/InitResult.pm line
59

 
HTML::FormHandler::InitResult::_result_from_input('pfappserver::Form::Field:
:SourceRuleCondition::22=HASH(0x7ffb...',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b804d28)',
'HASH(0x7ffb9b73ea00)', 1) called at
/usr/share/perl5/vendor_perl/HTML/FormHandler/Field/Compound.pm line 74

Class::MOP::Class:::around('CODE(0x7ffb798c81c0)',
'pfappserver::Form::Field::SourceRuleCondition::22=HASH(0x7ffb...',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b804d28)',
'HASH(0x7ffb9b73ea00)', 1) called at
/usr/lib64/perl5/vendor_perl/Class/MOP/Method/Wrapped.pm line 162

 
Class::MOP::Method::Wrapped::__ANON__('pfappserver::Form::Field::SourceRuleC
ondition::22=HASH(0x7ffb...',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b804d28)',
'HASH(0x7ffb9b73ea00)', 1) called at
/usr/lib64/perl5/vendor_perl/Class/MOP/Method/Wrapped.pm line 91

 
HTML::FormHandler::Field::Compound::_result_from_input('pfappserver::Form::F
ield::SourceRuleCondition::22=HASH(0x7ffb...',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b804d28)',
'HASH(0x7ffb9b73ea00)', 1) called at
/usr/share/perl5/vendor_perl/HTML/FormHandler/Field/Repeatable.pm line 159

 
HTML::FormHandler::Field::Repeatable::_result_from_input('pfappserver::Form:
:Field::DynamicList::18=HASH(0x7ffb9b814880)',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b81d618)',
'ARRAY(0x7ffb9b73e940)', 1) called at
/usr/share/perl5/vendor_perl/HTML/FormHandler/InitResult.pm line 59

 
HTML::FormHandler::InitResult::_result_from_input('pfappserver::Form::Field:
:SourceRule::21=HASH(0x7ffb9b49cba0)',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b793108)',
'HASH(0x7ffb9b761180)', 1) called at
/usr/share/perl5/vendor_perl/HTML/FormHandler/Field/Compound.pm line 74

Class::MOP::Class:::around('CODE(0x7ffb798c81c0)',
'pfappserver::Form::Field::SourceRule::21=HASH(0x7ffb9b49cba0)',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b793108)',
'HASH(0x7ffb9b761180)', 1) called at
/usr/lib64/perl5/vendor_perl/Class/MOP/Method/Wrapped.pm line 162

 
Class::MOP::Method::Wrapped::__ANON__('pfappserver::Form::Field::SourceRule:
:21=HASH(0x7ffb9b49cba0)',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b793108)',
'HASH(0x7ffb9b761180)', 1) called at
/usr/lib64/perl5/vendor_perl/Class/MOP/Method/Wrapped.pm line 91

 
HTML::FormHandler::Field::Compound::_result_from_input('pfappserver::Form::F
ield::SourceRule::21=HASH(0x7ffb9b49cba0)',
'HTML::FormHandler::Field::Result=HASH(0x7ffb9b793108)',
'HASH(0x7ffb9b761180)', 1) called at
/usr/share/perl5/vendor_perl/HTML/FormHandler/Field/Repeatable.pm line 159

 
HTML::FormHandler::Field::Repeatable::_result_from_input('pfappserver::Form:
:Field::DynamicList::18=HASH(0x7ffb9b741470)',