Re: [PacketFence-users] pfqueue gets wedged

2017-04-27 Thread Charles Rumford
On 4/27/17 9:42 AM, Fabrice Durand wrote: > Hello Charles, > > api:desAssociate is when a device is in process of registration or when > the unreg date is reached. > > api:fingerbank_process is probably based on the dhcp traffic the server > receive. > > Do you have some errors in the

Re: [PacketFence-users] pfqueue gets wedged

2017-04-27 Thread James Rouzier
Charles what version of packetfence are you using? James Rouzier jrouz...@inverse.ca :: +1.514.447.4918 (x115) :: http://www.inverse.ca Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence (http://www.packetfence.org) On 2017-04-27 9:49 AM, Charles Rumford wrote: > On

Re: [PacketFence-users] packetfence-zen 7.0.0

2017-04-27 Thread Torry, Andrew
Hi again folks, I just realised that the ‘Preview’ button that does work after opening the connection profile in the GUI is not previewing the selected profile at all but is actually just previewing the ‘default’ profile regardless of which profile is opened in the GUI. Any ideas what might

Re: [PacketFence-users] packetfence-zen 7.0.0

2017-04-27 Thread Torry, Andrew
Hi folks, I am trying to migrate my config from a 6.5 box (working) onto a 7.0 box. I have copied and pasted config file entries for the ‘portal profiles’ now called ‘Connection profiles’ and all appears to be correct. I am though unable to ‘Preview’ any portal profiles except the ‘default’

[PacketFence-users] Captive portal SSL not using defined cert after PF7 upgrade

2017-04-27 Thread Sokolowski, Darryl
Hi all, When on 6.5.1 I had purchased and installed an SSL certificate for the portal and admin. Installed and updated ssl-certificates.conf and no certificate errors. After the upgrade to version 7, ssl-certificates.conf still has the correct certificate referenced, but the portal is using

Re: [PacketFence-users] packetfence-zen 7.0.0

2017-04-27 Thread Fabrice Durand
Hello Andrew, it has been fixed in the maintenance branch, let's run pf-maint.pl. Regards Fabrice Le 2017-04-27 à 04:51, Torry, Andrew a écrit : > > Hi again folks, > > > > I just realised that the ‘Preview’ button that does work after opening > the connection profile in the GUI is not

[PacketFence-users] pfqueue gets wedged

2017-04-27 Thread Charles Rumford
This morning we put our PacketFence installation into production. One of the first things that I noticed was that it appears that the pfqueue gets wedged with task types api:desAssociate and api:fingerbank_process with ever increasing outstanding task counters. If I restart the pfqueue, I see

Re: [PacketFence-users] packetfence-zen 7.0.0

2017-04-27 Thread Torry, Andrew
Hi Fabrice, Running pf-maint.pl has fixed the 501 error so that the PREVIEW button now works for all profiles but they are now all displaying a preview of the 'default' profile no matter which profile I am actually previewing. If I change the portal module chain for the default profile I see

Re: [PacketFence-users] Captive portal SSL not using defined cert after PF7 upgrade

2017-04-27 Thread Fabrice Durand
Hello Darryl, haproxy terminate the ssl tunnel, so you need to do something like that with your cert: cat /usr/local/pf/conf/ssl/server.crt /usr/local/pf/conf/ssl/server.key > /usr/local/pf/conf/ssl/server.pem Regards Fabrice Le 2017-04-26 à 21:53, Sokolowski, Darryl a écrit : > > Hi all, >

Re: [PacketFence-users] pfqueue gets wedged

2017-04-27 Thread Fabrice Durand
Hello Charles, api:desAssociate is when a device is in process of registration or when the unreg date is reached. api:fingerbank_process is probably based on the dhcp traffic the server receive. Do you have some errors in the pfqueue.log ? Regards Fabrice Le 2017-04-27 à 09:36, Charles

Re: [PacketFence-users] pfqueue gets wedged

2017-04-27 Thread Charles Rumford
On 4/27/17 10:49 AM, James Rouzier wrote: > Charles what version of packetfence are you using? 6.5.1 I restarted packetfence as a whole, and has been sending CoAs just fine for about an hour. The only correlation that I could find while troubleshooting was pfqueue. It's clearly a load related

Re: [PacketFence-users] Captive portal SSL not using defined cert after PF7 upgrade

2017-04-27 Thread Sokolowski, Darryl
Thanks Fabrice, I concatenated my server certificate and server key as suggested and restarted pf, but unfortunately when I access the portal page, I am still getting the certificate issued by/to 127.0.0.1 instead of my Comodo certificate. If it helps, my ssl-certificates.conf file looks like:

Re: [PacketFence-users] pfqueue gets wedged

2017-04-27 Thread James Rouzier
Charles, Can you try this patch to see if it helps your issue Patch instructions cd /usr/local/pf curl https://github.com/inverse-inc/packetfence/commit/5818ec6e37c396a68bef8411601c1c8131fa26a9.diff > 5818ec6e37c396a68bef8411601c1c8131fa26a9.diff service packetfence stop copy to