Re: [PacketFence-users] DOT1X MAC authentication

2018-12-12 Thread Durand fabrice via PacketFence-users
Hello Carlos, you can insert in the database the mac addresses and reg them and assign a role. Regards Fabrice Le 18-12-12 à 15 h 48, Carlos Wetli via PacketFence-users a écrit : Hello, I am trying to understand if there is a possible way within PF to check, in case of a client has no

Re: [PacketFence-users] SSL Certificate for portal

2018-12-12 Thread Durand fabrice via PacketFence-users
Hello Eric, for the portal you need to generate a server.pem file (haproxy use it). It contain the certificate + the intermediate and the private key. Regards Fabrice Le 18-12-12 à 16 h 44, Eric Rolleman via PacketFence-users a écrit : Where do I change the SSL certificate for the portal?

Re: [PacketFence-users] Captive Portal authorization failed "you do not have permission to register a device with this username"....

2018-12-12 Thread Enrico Becchetti via PacketFence-users
Dear All, a little update of my case. When I create SAML Internal Source I can't define a new rule because it's impossible ! There are any filed that permit this action so I add an HTTPASSWD internal source and inside of it I create a rule named INFN-AAI-SAML. After that I change INFN-AAI

[PacketFence-users] SSL Certificate for portal

2018-12-12 Thread Eric Rolleman via PacketFence-users
Where do I change the SSL certificate for the portal? I replaced the /usr/local/pf/conf/ssl/server.crt and /usr/local/pf/conf/ssl/server.key files and restarted, but that only changed the certificate used by the admin site, not the captive portal. ___

[PacketFence-users] DOT1X MAC authentication

2018-12-12 Thread Carlos Wetli via PacketFence-users
Hello, I am trying to understand if there is a possible way within PF to check, in case of a client has no supplicant, the client MAC address against an external MAC Database which can be checked with SQL. We would like to populate the MAC DB from multiple sources like SCCM, CI Database and etc