commercial)
>
> Regards
>
> Fabrice
>
>
>
> Le 2018-07-23 à 08:35, Bebbet van Dinges via PacketFence-users a écrit :
>> Hello Fabrice,
>>
>> This is not the most beautiful solution, but it works. Thanks!
>>
>> Our eduroam partner is complaining th
ib/pf/services/manager/radiusd_child.pm#L443
>
>
> and adapt the config you want.
>
> Regards
>
> Fabrice
>
>
> Le 2018-07-20 à 03:57, Bebbet van Dinges via PacketFence-users a écrit :
>> Hello PF-Users,
>>
>> We've got a problem with zombie hom
nyone else came across this problem, if so, how did you fix this?
Kind regards,
Bebbet van Dinges
--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.lin
Hello List,
My fingerbank maintenance task that i never seemed to have before? is
now running mid day, while all my users are roaming (or try to roam).
Is there a way to reschedule this task (fingerbank_data_update) from
11:50 to 23:50?
Yours sincerely,
Bebbet
Your best option may well be to use inline for this use case.
Or get some supported gear, sometimes you can get free examples for
attending webinars from Aerohive or Meraki
Bebbet
On 5-9-2017 12:49, Spencer Hazell via PacketFence-users wrote:
> Hi,
>
>
>
> I spent a long time but have
printer role).
>
>
> Regards
>
> Fabrice
>
>
>
> Le 2017-06-12 à 08:15, Bebbet van Dinges via PacketFence-users a écrit :
>> Hello Fabrice,
>>
>> can you give an example? or point me to some documentation where it is
>> documented?
>>
>
if you run netstat -tapn, can you see where the mysql instance is
listening? if its on 127.0.0.1:3306, then the haproxy can listen on the
management:3306, no problem. When a request to management:3306 gets
made, haproxy will proxy the request to the appropriate server.
(as per my understanding of
Hello Fabrice,
can you give an example? or point me to some documentation where it is
documented?
Bebbet
On 9-6-2017 14:26, Fabrice Durand via PacketFence-users wrote:
> Hi Hello Kehinde,
>
> MAB is exactly what you need , also for that create a violation that
> will autoreg printer, it will
As of the last 7.0 release, haproxy is in front. Did you insert your own
certificate?
Then make sure server.pem is also present, or haproxy will be unable to
start, and your portal unable to connect.
Bebbet
On 22-5-2017 04:58, Walt Draffin wrote:
> I'm having a problem with my captive portal.
Hello,
my logfiles are exploding with these messages:
May 11 08:25:00 networklogon fingerbank: pfqueue(2769) WARN:
[mac:00:00:48:73:f0:fe] Cannot find any combination ID in any schemas
(fingerbank::Source::LocalDB::_getCombinationID)
May 11 08:25:00 networklogon fingerbank: pfqueue(2769) INFO:
:55, Durand fabrice wrote:
> Hello Bebbet,
>
> haproxy is in front of the apache portal , so have a look at haproxy and
> restart it.
>
> Regards
>
> Fabrice
>
>
>
> Le 2017-05-07 à 13:30, Bebbet van Dinges a écrit :
>> Hello all,
>>
>> I
? I'll try and get some better error, when
i succeed, i'll let you know.
Bebbet
On 7-5-2017 19:55, Durand fabrice wrote:
> Hello Bebbet,
>
> haproxy is in front of the apache portal , so have a look at haproxy and
> restart it.
>
> Regards
>
> Fabrice
>
>
>
&g
Hello all,
I've done a fresh PF install of 7.0.0. Since then i've got issues trying
to reach the portal (status/unreg).
I've uncovered that the iptables had no 'hole' to allow the management
vlan/interface to reach the input-portal-if chain. Assigning another
role to the management interface
Hello,
Since last week we have a odd situation (regarding the time before).
After the upgrade to 6.3.0, users are able to login with any anonymous
id, according to my understanding of radius, this is technically
correct, but users get autocreated in PF with their anonymous identity.
Our users
Regards
>
> Fabrice
>
>
>
> Le 2016-10-10 à 04:57, Bebbet van Dinges a écrit :
>> Hello All,
>>
>> i've got a pfqueue.log full of fingerbank errors, we also get mails
>> about the hourly limit of fingerbank api, can someone shed some light on
>> t
Hello,
My logfiles are really exploding with "Use of uninitialized value" is
there some patch/toggle/switch available to silence this output, or a
fix/workaround?
yours sincerely,
Bebbet
Oct 11 10:23:23 httpd.aaa(2595) WARN: [mac:50:e5:49:82:cb:63] Use of
uninitialized value in lc at
Hello All,
i've got a pfqueue.log full of fingerbank errors, we also get mails
about the hourly limit of fingerbank api, can someone shed some light on
this?
Yours sincerely,
Bebbet
Oct 10 10:53:50 pfqueue(2664) ERROR: [mac:64:6c:b2:6c:18:85]
DBIx::Class::Storage::DBI::_prepare_sth(): DBI
> 1. No matter what the device type is, after a user registers their
> device in the captive portal, they are presented with an “Unable to
> detect network connectivity. Try restarting your web browser or opening
> a new tab to see if your access has been successfully enabled.” This
> error
Hello Admins,
For quite a while now (i know, should've come earlier) i get these
strange messages/warnings that i can't seem to get a grip on.
Anyone got an idea what it could be?
The macs seem to be printers, and some workstations..
Yours sincerely,
Bebbet
Aug 29 17:15:18 httpd.aaa(3511)
On 28-6-2016 22:56, Derek Wuelfrath wrote:
> Excellent,
>
> Let me know so that I can adjust the config in the package !
>
> Cheers!
> -dw.
Hello Derek,
I've just checked again, and since monday there have been no errors!
So i'm quite sure this adjustment works. Let me know if you need to
On 28-6-2016 22:36, Derek Wuelfrath wrote:
> Hello Bebbet,
>
> Any news ?
>
> Cheers!
> -dw.
No news, in the form of no errors, i was thinking to report back
tomorrow, check 1 more night before calling it a win.
Thanks!
Bebbet
signature.asc
Description: OpenPGP digital signature
On 27-6-2016 15:11, Derek Wuelfrath wrote:
> Hello Bebbet,
>
> In the logrotate configuration file, can you change the two ‘su’ statements
>
> from
>
> su pf pf
>
> to
>
> su root pf
>
> Thanks
>
> Cheers!
> -dw.
Hello,
I've changed those parameters, i'll let you know!
Thanks for all
On 23-6-2016 20:23, Derek Wuelfrath wrote:
> Can you remove the two lines
>
> create 640 pf pf
>
> from /etc/logrotate.d/packetfence
>
> and check tomorrows logrotate logs. (Send them over)
>
> Cheers!
> -dw.
Hello i've done as you suggested, but nothing really changed.
Bebbet
error:
On 23-6-2016 20:23, Derek Wuelfrath wrote:
> Can you remove the two lines
>
> create 640 pf pf
>
> from /etc/logrotate.d/packetfence
>
> and check tomorrows logrotate logs. (Send them over)
>
> Cheers!
> -dw.
Hello,
I've done these changes, i dont know if i'm able to check tomorrow, most
On 23-6-2016 15:24, Fabrice Durand wrote:
> simple answer is use 802.1x.
>
> Regards
> Fabrice
Hello Fabrice,
We're using 802.1x mac-based on the lan, and 802.1x on the wifi, can you
elaborate a bit more?
Best regards,
Bebbet
signature.asc
Description: OpenPGP digital signature
On 23-6-2016 18:59, Derek Wuelfrath wrote:
> Which Linux distribution / version ?
Centos 7
>
> Can you send output of
>
> ls -l /etc/logrotate.d/
[root@nac ~]# ls -l /etc/logrotate.d/
total 60
-rw-r--r--. 1 root root 178 Nov 23 2015 chrony
-rw-r--r--. 1 root root 300 Jun 17 21:50
On 23-6-2016 16:14, Derek Wuelfrath wrote:
> Bebbet,
>
> Jumping in related to the logrotate issues.
>
> Can you tell me which version of PacketFence you are actually running ?
> Also, can you provide me the /etc/logrotate.d/packetfence file.
>
> Thanks
>
> Cheers!
> -dw.
Here is the
Hello,
We are implementing packetfence as our nac solution, which works great
in testing. I've only got a thing with our laptops. They're going to get
connected trough wifi and lan, which are 2 different mac's. Is there a
way to link them together? So that our users don't have to login to lan,
On 22-6-2016 15:09, Louis Munro wrote:
> What kind of errors?
Enclosed with this mail is the errorlog, i also seem to get a lot of
permission errors with logrotate in the cron, also enclosed.
Stuff seems to work fine though..
kind regards,
Bebbet
[Tue Jun 21 23:04:51.011511 2016]
On 21-6-2016 21:57, Louis Munro wrote:
> I have never had to disable any CentOS repos during installation.
Thanks for the insight, i think i'll reinstall from scratch, i've done
some csv exports of the node table. From there it should be easier to
import the nodes back to PF
I've only got a
systemctl start mariadb
mysql_secure_installation
systemctl enable mariadb
https://@ip_of_packetfence:1443/configurator
Is what i did (from my personal documentation)
kind regards,
Bebbet
On 21-6-2016 19:10, Louis Munro wrote:
>
>
>> On Jun 21, 2016, at 12:40 , Bebbet van Dinges <b
Hello Louis,
Its centos, and pf 6.0.3
Kind regards,
Bebbet
On 21-6-2016 15:11, Louis Munro wrote:
>
>> On Jun 21, 2016, at 6:32 , Bebbet van Dinges <beb...@bebbet.nl> wrote:
>>
>> Hello,
>>
>> I've installed PF (freshly) according to the documentation, af
Hello,
I've installed PF (freshly) according to the documentation, after
installing however the dashboard shows all the graphs as broken.
The errorlog shows a lot of errors (http://pastebin.com/raw/qqLQ0naY)
I've tried reinstalling graphite2 and graphite-web, but nothing changed.
I'm looking
Hello,
I've installed PF (freshly) according to the documentation, after
installing however the dashboard shows all the graphs as broken.
The errorlog shows a lot of errors (http://pastebin.com/raw/qqLQ0naY)
I've tried reinstalling graphite2 and graphite-web, but nothing changed.
I'm looking
Hello,
I'm no expert in this particular subject, but you might check tcpdump
while a client tries to obtain a DHCP address. Maybe the switch you use
is filling arp tables or something..
Bebbet
On 28-5-2016 21:05, mj wrote:
> Hi,
>
> No replies, so I'm posting it again. We're just looking for
Hello,
I'm trying to get people authorized to my wifi network, so far i've
gotten this far. The configuration from 5.7 works, but my test server on
6.0.1 with the exact same configuration gives this error.
Anyone got an idea that might help me forward?
Yours sincerely,
Bebbet
from raddebug:
also. It is like packetfence is not responding to the radius messages at all.
> Shall I post my config files or something?
> Thanks!
>
> Gábor Barócsi
> Network and System Engineer
>
>
>
>
> -Original Message-
> From: Bebbet van Dinges [mailto:beb...@bebbet
Hello,
A start would be the packetfence logs
(/usr/local/pf/logs/packetfence.log) info/debug messages are written
there. Is the switch in production? Else it only gives out access-accept
packages, but no control logic is applied yet.
Bebbet
On 24-2-2016 16:55, BARÓCSI Gábor wrote:
> Hello,
>
>
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
When you do tcpdump, it wont give packets right away. Try running
tcpdump and then generate triggers (unplug/plug cable, reauthenticate
mac-based security...) the daemon seems to be listening, but with sql
errors.. Check the sql configuration.. in
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
Hello,
Depending on how much time you spent getting it this far, i would
suggest starting over. Should be the most failsafe way. Else you can
try to initialize the MySQL database with some help from here:
Hello
Have you restarted Radius after the configuration change? And is radius
started? Else you could try to start it as a process with something like
/usr/sbin/radiusd –d /usr/local/pf/raddb –X
and continue your process from there.
Kind regards,
Bebbet
On 23-2-2016 16:01, Harun GÜLEÇ wrote:
>
. well newest
entry) in iplog_archive, inline query
Can you test this aswell? My (still small) database does both in about
0,01 second, for 5000+ rows
On 17-2-2016 10:27, Bebbet van Dinges wrote:
> Hello Gregory,
>
> Thank you very much for the script, if i have questions regarding
Hello,
Reading the configuration i see you point atleast twice with radius to
localhost/switchip 192.168.1.5, where it seems 192.168.1.1 is your PF
server.
ON FE0/3 you have a different configuration(radius) then FE0/2(snmp),
does it work in the 3rd port? Radius is the way to go, atleast with
Hello Henning,
Not quite sure if its possible, but you might be faster to just
configure a proxy passtrough with the httpd.portal(apache) daemon.
http://httpd.apache.org/docs/2.2/mod/mod_proxy.html the reverseproxypass
seems (to me) to be what you are looking for.
Bebbet
On 19-2-2016 20:49,
# Trigger violation
> violation_trigger($mac,
> $ACCOUNTING_POLICY_TIME, $TRIGGER_TYPE_ACCOUNTING);
> }
> }
> }
>}
>}
>
> Regards
> Fabrice
>
> Le 2016-02-16 04:06, Bebbet van Dinges a écrit :
> He
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
Hello Gregory,
I'm quite interested in this script you wrote, can you mail it to the
list, or to me?
Yours sincerely,
Bebbet
On 12-1-2016 15:59, Thomas, Gregory A wrote:
> I had the same problem when I was running on a box with somewhat
> limited
Hello,
We are implementing PacketFence and its running quite fine! Easy (once
you get the hang of it..).
I do somehow get a lot of errors about AAA Acounting:
Feb 16 09:41:54 httpd.aaa(26439) WARN: [mac:d8:cb:8a:85:20:2d] Use of
uninitialized value in int at /usr/local/pf/lib/pf/radius.pm line
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
Hello Gregory,
I'm quite interested in this script you wrote, can you mail it to the
list, or to me?
Yours sincerely,
Bebbet
On 12-1-2016 15:59, Thomas, Gregory A wrote:
> I had the same problem when I was running on a box with somewhat
> limited
48 matches
Mail list logo