Re: [PacketFence-users] Help! email is not allowed to sponsor guest access

2019-07-23 Thread Helen Power via PacketFence-users
Hi Nicolas, I think I figured it out. I changed the filter from "member of" to "nested group" and now it's working. Thank you very much for your help, Helen -Original Message- From: Helen Power via PacketFence-users Sent: Tuesday, July 23, 2019 1:35 PM To: packetfence-users@lists.sou

Re: [PacketFence-users] PacketFence (9.0.1) EAP-TLS Authentication Source

2019-07-23 Thread Brenek, Benjamin via PacketFence-users
Hi Fabrice, Please see log output below: (947) Tue Jul 23 16:33:39 2019: Debug: Received Access-Request Id 104 from 192.168.237.50:41017 to 192.168.237.11:1812 length 263 (947) Tue Jul 23 16:33:39 2019: Debug: User-Name = "host/d4:be:d9:84:b0:8a" (947) Tue Jul 23 16:33:39 2019: Debug: Servic

Re: [PacketFence-users] Kind request for help getting PacketFence to run on Debian 9.9 Stretch

2019-07-23 Thread Magnus Leßmann via PacketFence-users
Hi Fabrice, thank you for the quick answer! the server is headless right now which makes that kind of impossible atm. The process "apache2" is running and listening to port 1443, yes. Regards Magnus On 7/23/19 9:47 PM, Fabrice Durand via PacketFence-users wrote: Hello Magnus, did you try h

Re: [PacketFence-users] Kind request for help getting PacketFence to run on Debian 9.9 Stretch

2019-07-23 Thread Fabrice Durand via PacketFence-users
Hello Magnus, did you try https://mgmt_ip:1443 ? Also do you see the process httpd.admin running ? Regards Fabrice Le 19-07-23 à 15 h 43, Magnus Leßmann via PacketFence-users a écrit : Hi there, I'll keep it short and simple: I want to install PacketFence on Debian 9.9 (Stretch)  for a loc

Re: [PacketFence-users] Help! email is not allowed to sponsor guest access

2019-07-23 Thread Helen Power via PacketFence-users
Hi Nicolas, I did /usr/local/pf/bin/pftest authentication helen_power 'password' Admin_Sponsor and get a reply like this: # Testing authentication for "Helen_Power" Authenticating against 'Admin_Sponsor' in context 'admin' Authentication SUCCEEDED against Admin_Sponsor (Authentication success

[PacketFence-users] Kind request for help getting PacketFence to run on Debian 9.9 Stretch

2019-07-23 Thread Magnus Leßmann via PacketFence-users
Hi there, I'll keep it short and simple: I want to install PacketFence on Debian 9.9 (Stretch)  for a local LAN event. For this, I have installed Debian 9.9 minimal with the netinstaller from my USB stick. (Nothing else but "basic system utilities" selected). I have disabled apparmor and seli

Re: [PacketFence-users] PacketFence (9.0.1) EAP-TLS Authentication Source

2019-07-23 Thread Fabrice Durand via PacketFence-users
Hello Benjamin, can you run this command and try to reconnect ? raddebug -f /usr/local/pf/var/run/radiusd.sock -t 300 Then paste the result. Regards Fabrice Le 19-07-23 à 10 h 29, Brenek, Benjamin via PacketFence-users a écrit : Hello All, I have been stuck on the issue of getting EAP-TL

Re: [PacketFence-users] EAP-MD5 & Active Directory?

2019-07-23 Thread Fabrice Durand via PacketFence-users
Hello John, so not really complex to configure. First you need to add a new radius authentication source in PacketFence (you NPS server). Next create a new REALM (like MD5) and add the NPS server in the radius auth list. Next you will need to edit the file conf/radiusd/packetfence and in

Re: [PacketFence-users] PacketFence Case Insensitive Local User Authentication

2019-07-23 Thread Brenek, Benjamin via PacketFence-users
Hi Fabrice, This worked. Thank you. Thank you, Ben From: Durand fabrice via PacketFence-users Sent: Tuesday, July 16, 2019 5:21 PM To: packetfence-users@lists.sourceforge.net Cc: Durand fabrice Subject: Re: [PacketFence-users] PacketFence Case Insensitive Local User Authentication CAUTION:

[PacketFence-users] PacketFence (9.0.1) EAP-TLS Authentication Source

2019-07-23 Thread Brenek, Benjamin via PacketFence-users
Hello All, I have been stuck on the issue of getting EAP-TLS authentication to work for a few days now and have not really been able to get anywhere. Any help would be greatly appreciated in getting this setup. I am testing with a Ethernet connected Windows 10 Laptop. The laptop has a trusted

[PacketFence-users] Ynt: Ynt: PROBLEM DURING LOGIN PHASE FROM PORTAL

2019-07-23 Thread Süleyman Gelener via PacketFence-users
Hello, UPDATE it seems like my fingerbank-collector doesnt work i tried to start it through packfetfence web interface but it does get PID = "0 "then i checked "pfcmd pf status" it seems like its disabled., then i tried to use systemctl to enable and start the service, the exact command is " s

Re: [PacketFence-users] [pf 9.0.1] password of the day

2019-07-23 Thread pro fence via PacketFence-users
HI Nicolas, thank you for your answer. In fact, i was using the wrong username. Regards, On Tue, 23 Jul 2019 at 14:04, Nicolas Quiniou-Briand via PacketFence-users < packetfence-users@lists.sourceforge.net> wrote: > Hello, > > Try to make your tests without a portal module. > Just create your s

[PacketFence-users] Ynt: Ynt: PROBLEM DURING LOGIN PHASE FROM PORTAL

2019-07-23 Thread Süleyman Gelener via PacketFence-users
Hello, UPDATE it seems like my fingerbank-collector doesnt work i tried to start it through packfetfence web interface but it does get PID = "0 "then i checked "pfcmd pf status" it seems like its disabled., then i tried to use systemctl to enable and start the service, the exact command is " s

Re: [PacketFence-users] [pf 9.0.1] password of the day

2019-07-23 Thread Nicolas Quiniou-Briand via PacketFence-users
Hello, Try to make your tests without a portal module. Just create your source with default values and try to use password you receive by mail. When you use POTD source, a dedicated user is created in DB with a password rotation based on POTD source configuration. -- Nicolas Quiniou-Briand n

Re: [PacketFence-users] Help! email is not allowed to sponsor guest access

2019-07-23 Thread Nicolas Quiniou-Briand via PacketFence-users
Hello, On 2019-07-22 9:53 p.m., Helen Power via PacketFence-users wrote: We want to achieve guest self-registration feature via sponsor email. I defined one authentication source type to AD with action “Mark as sponsor” . However, when I use guest signup and put the sponsor email in then it sa

Re: [PacketFence-users] Ynt: PROBLEM DURING LOGIN PHASE FROM PORTAL

2019-07-23 Thread Nicolas Quiniou-Briand via PacketFence-users
Hello, On 2019-07-23 7:02 a.m., Süleyman Gelener via PacketFence-users wrote: First of all thank you Nicolas for the answer. No, I didnt create such "user" because as far as i understand when i login with username and password it gets "user" infromation from openldap or at least thats what hap

Re: [PacketFence-users] Help : Fail to start Packet fence service

2019-07-23 Thread Nicolas Quiniou-Briand via PacketFence-users
On 2019-07-23 11:50 a.m., adr.lebron--- via PacketFence-users wrote: How can I change the IP that was configured yesterday to make it correct here ? Edit pf.conf and change IP your ip address. Then run following commands: #v+ /usr/local/pf/bin/pfcmd configreload hard /usr/local/pf/bin/pfcmd ser

Re: [PacketFence-users] Lost managment connection

2019-07-23 Thread Nicolas Quiniou-Briand via PacketFence-users
Hello, Check your config in console. When PacketFence is running, you can reach the server through SSH or HTTPS (1443 port) only on management interface. -- Nicolas Quiniou-Briand n...@inverse.ca :: +1.514.447.4918 *140 :: https://inverse.ca Inverse inc. :: Leaders behind SOGo (https://sogo

Re: [PacketFence-users] [PF 9.0.1] Cisco WLC and Virtual IP

2019-07-23 Thread pro fence via PacketFence-users
Hi, on my first server, both local server ip and the vip are listening on eth0 also inPthe interface configuration, the portal is only listening on the local server ip. Port 80 is listening like this : local_server_ip:80 0.0.0.0:* LISTEN 9627/httpd vip_ip:80

Re: [PacketFence-users] Help : Fail to start Packet fence service

2019-07-23 Thread adr.lebron--- via PacketFence-users
Hi, Thanks for your answer. I configurated the Database and reconfigure the packet with dpkg, it worked, but i was at home and selected my LAN for address, so now i'm at the company and have this error message : -- L'unité (unit) packetfence-httpd.admin.service a commencé à démarrer. juil.

[PacketFence-users] Lost managment connection

2019-07-23 Thread Andrea Lenarduzzi via PacketFence-users
Hi, I've packetfence ip eth0 10.10.10.110, Now I've to set Management, portal, Registration. Managment interface on eth0 10.10.10.0/24,registration eth1 10.10.11.0/24 and portal on eth2 10.10.12.0/24. packetfence server eth0 and managment interface could have same ip?when I activate eth1 I've lo

Re: [PacketFence-users] Help : Fail to start Packet fence service

2019-07-23 Thread lists via PacketFence-users
Hi, No expert, but: On 19-7-2019 11:12, adr.lebron--- via PacketFence-users wrote: juil. 17 14:28:43 debian pfcmd[4448]: FATAL - please define exactly one management interface juil. 17 14:28:43 debian pfcmd[4448]: WARNING - internal network(s) not defined! juil. 17 14:28:43 debian pfcmd[4448]:

[PacketFence-users] Ynt: PROBLEM DURING LOGIN PHASE FROM PORTAL

2019-07-23 Thread Süleyman Gelener via PacketFence-users
Hello, First of all thank you Nicolas for the answer. No, I didnt create such "user" because as far as i understand when i login with username and password it gets "user" infromation from openldap or at least thats what happened when i logined from preview of captive portal.For instance for my