Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-25 Thread Franck Rakotonindrainy via PacketFence-users
cie issue Best regards Franck From: EXTERN Ludovic Zammit Sent: Tuesday, February 25, 2020 2:48 PM To: Franck Rakotonindrainy Cc: packetfence-users@lists.sourceforge.net Subject: Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients   Hello Franck,

Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-25 Thread Ludovic Zammit via PacketFence-users
on this > dependencie issue > > > Best regards > Franck > > > > > > > > From: EXTERN Ludovic Zammit > > Sent: Tuesday, February 25, 2020 2:48 PM > > To: Franck Rakotonindrainy > > Cc: packetfence-users@lists.sour

Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-25 Thread Ludovic Zammit via PacketFence-users
Hello Franck, Do you have a realm for kabi.ads.fresenius.com ? Do you use the default realm ? Make sure to split it on the radius it could help in some cases. That error message means that it’s PacketFence that reject the authentication so check in the logs/packetfence.log for that Mac

Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-25 Thread Franck Rakotonindrainy via PacketFence-users
The radius debug shows this log below with these two errors any indication ? ... (253) Thu Feb 20 17:21:38 2020: Debug: packetfence-multi-domain: :User-Name = $RAD_REQUEST{'User-Name'} -> 'host/FV00ccdd.kabi.ads.fresenius.com' (253) Thu Feb 20 17:21:38 2020: Debug: packetfence-multi-domain:

Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-25 Thread Franck Rakotonindrainy via PacketFence-users
colas Quiniou-Briand via PacketFence-users Cc: Nicolas Quiniou-Briand Subject: Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients   The radius debug shows this log below with these two errors any indication ? ... (253) Thu Feb 20 17:2

Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-20 Thread Franck Rakotonindrainy via PacketFence-users
Hello If anybody could explain me the meaning of this error : "the user session was previously rejected: returning reject again" Feb 19 15:34:49 nac9-1 auth[14910]: rlm_sql (sql): Opening additional connection (3), 1 of 63 pending slots used Feb 19 15:34:49 nac9-1 auth[14910]: (31)

Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-12 Thread Franck Rakotonindrainy via PacketFence-users
: Tuesday, February 11, 2020 2:53 PM To: EXTERN Nicolas Quiniou-Briand via PacketFence-users Cc: Nicolas Quiniou-Briand Subject: Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients Here are the logs parts packetfence.log Feb 11 08:35:57 nac9-1 pfipset[30180]: t

Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-11 Thread Franck Rakotonindrainy via PacketFence-users
joined the domain. B.R. Franck From: EXTERN Nicolas Quiniou-Briand via PacketFence-users Sent: Tuesday, February 11, 2020 1:50 PM To: packetfence-users@lists.sourceforge.net Cc: Nicolas Quiniou-Briand Subject: Re: [PacketFence-users] Packetfence Cluster, one mem

Re: [PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-11 Thread Nicolas Quiniou-Briand via PacketFence-users
Hi, On 11/02/2020 09:17, Franck Rakotonindrainy via PacketFence-users wrote: but when radius (AD) authentication is send to the node I call 9-1, it never succeed 1. Did you see something interesting in packetfence.log or radius.log on 9-1 node ? 2. If you use EAP-PEAP, are you sure 9-1 is

[PacketFence-users] Packetfence Cluster, one member not authenticating clients

2020-02-11 Thread Franck Rakotonindrainy via PacketFence-users
Hello, I have a packetfence cluster of 3 nodes (PF9.3 running on Debian 9) I have an issue with one member of the node in the cluster, the authentication request are proxied to any member of the cluster (I don't understand following which policy) but when radius (AD) authentication is send to