Re: [PacketFence-users] Cisco ASA VPN Configuration in PF 9.0

2019-06-03 Thread Cristian Mammoli via PacketFence-users
Ok, a little bit of info: The redirect acl on the example is unused, as well as the vpn profile, so they should be removed by the docs The plugin relies on the mdm-tlv=device-mac= radius attribute from the client and since I was testing using OpenConnect and not the official AnyConnect client

Re: [PacketFence-users] Question about Insufficient space to store pair string

2019-06-03 Thread Nicolas Quiniou-Briand via PacketFence-users
Hello, I already saw that error but it should not prevent an authentication by FreeRADIUS. Could you provide packetfence.log and radiusd.log lines for a specific MAC address which had issue ? -- Nicolas Quiniou-Briand n...@inverse.ca :: +1.514.447.4918 *140 :: https://inverse.ca Inverse

Re: [PacketFence-users] Cisco ASA VPN Configuration in PF 9.0

2019-06-03 Thread Cristian Mammoli via PacketFence-users
This is a debug log of a vpn connection. Things I noticed: There is no MAC address associated with the request and in Audit I see the remote IP address as MAC address. Is it correct? Connection profile is not instantiated, instead, all authentication sources are tried in order PF complains no

Re: [PacketFence-users] Cisco ASA VPN Configuration in PF 9.0

2019-06-03 Thread Cristian Mammoli via PacketFence-users
Hi, is it possible to have further info on the new VPN feature? The docs are lacking info: I tried again from scratch on a Cisco ASA and the example config refers a vpn client profile that does not exists by default: anyconnect profiles VPN_client_profile disk0:/VPN_client_profile.xml