Re: [PacketFence-users] Google oauth2 - Behavior/Troubleshooting

2020-04-22 Thread Bill Handler via PacketFence-users
I’m running on v10, using the default whitelist in the Google Auth config. The end system is talking to google, verified with wireshark, and by inputting wrong password. The end system’s role never gets updated, even though I have a catchall rule in place that should move it to a different

Re: [PacketFence-users] Radius Filter - Block Mac Auth for certain roles

2020-04-22 Thread Durand fabrice via PacketFence-users
Hello Robert, can you paste the packetfence.log when the device authenticate and also paste the radius filter. Regards Fabrice Le 20-04-22 à 15 h 58, Robert McNutt via PacketFence-users a écrit : I'm trying to set a radius filter to block mac auth for any devices assigned to roles that

Re: [PacketFence-users] VLAN isolation and routed networks

2020-04-22 Thread Sallee, Jake via PacketFence-users
What you are describing sounds similar to what we are doing. PF works great with routed networks and depending on the details of your VPN connection I think it should work in your situation. I have never setup a PF deployment like the one you are talking about however if your VPN is setup in a

[PacketFence-users] Google oauth2 - Behavior/Troubleshooting

2020-04-22 Thread Bill Handler via PacketFence-users
Running into an issue with Google oauth2 authentication via Captive Portal... * Have it configured and set as an External Authentication Source * Have all the correct settings on Google Developer site What's happening is that after entering the username/password in the Google display

Re: [PacketFence-users] Packetfence iptables-restore issues and windbind domain join not working after upgrade to 10

2020-04-22 Thread Tomasz Karczewski via PacketFence-users
I deployed fresh pf-zen version 10 installation and have problems with iptables too. In /var/logs/messages i see Apr 22 17:52:33 PF10 perl: iptables-restore: line 226 failed Second thing is that radiusd-acct won’t start too. Tomasz Karczewski Administrator Sieci

[PacketFence-users] Radius Filter - Block Mac Auth for certain roles

2020-04-22 Thread Robert McNutt via PacketFence-users
I'm trying to set a radius filter to block mac auth for any devices assigned to roles that should only auth via PEAP or EAP-TLS... For example, if a port has a phone and computer plugged in, the phone will do mac auth but the computer should never get a radius accept for mac auth... whats

[PacketFence-users] VLAN isolation and routed networks

2020-04-22 Thread Erik via PacketFence-users
Hi, I have recently begun to investigate PacketFence to see if it can be used under the circumstances I am faced with. What I have found in the documentation sofar is rather little and tells me that routed networks are possible, but the example does not match my circumstances. I am guessing

Re: [PacketFence-users] pfacct crash after update to 10.0

2020-04-22 Thread Nicolas Quiniou-Briand via PacketFence-users
On 22/04/2020 14:49, Robert McNutt via PacketFence-users wrote: How do I get the patched binary, I cant find pf-maint.pl and yum update doesnt find any new packages. Robert McNutt /usr/local/pf/addons/pf-maint.pl -- Nicolas Quiniou-Briand n...@inverse.ca ::

Re: [PacketFence-users] PF 10.0.0 webadmin won't start after Upgrade

2020-04-22 Thread Nicolas Quiniou-Briand via PacketFence-users
On 22/04/2020 12:44, felix13890--- via PacketFence-users wrote: AH00558: httpd: Could not reliably determine the server's fully qualified domain name, using 172.20.5.14. Set the 'ServerName' directive globally to suppress this message This message doesn't mean that web admin is not

[PacketFence-users] PF 10.0.0 webadmin won't start after Upgrade

2020-04-22 Thread felix13890--- via PacketFence-users
Hello Folks! After upgrading to 10.0.0 from 9.3.0 I’m unable to start the webadmin interface. Here the message from systemctl:AH00558: httpd: Could not reliably determine the server's fully qualified domain name, using 172.20.5.14. Set the 'ServerName' directive globally to suppress this message  

Re: [PacketFence-users] pfacct crash after update to 10.0

2020-04-22 Thread Robert McNutt via PacketFence-users
How do I get the patched binary, I cant find pf-maint.pl and yum update doesnt find any new packages. Robert McNutt On Mon, Apr 20, 2020 at 10:51 AM Cristian Mammoli via PacketFence-users < packetfence-users@lists.sourceforge.net> wrote: > Thanks guys, keep up the good work > > Il 20/04/2020

Re: [PacketFence-users] Packetfence iptables-restore issues and windbind domain join not working after upgrade to 10

2020-04-22 Thread Robert McNutt via PacketFence-users
Nailed it... I guess v10 includes some netflow functionality because that line in the iptables.conf was the culprit, I installed netflow and all is good... Robert McNutt On Tue, Apr 21, 2020 at 1:52 AM Nicolas Quiniou-Briand via PacketFence-users wrote: > Hello Robert, > > On 20/04/2020 21:47,