[PacketFence-users] Vlan Pooling Question

2018-01-16 Thread Truax, Peter via PacketFence-users
Hello everyone, We are implementing PacketFence using Out-of-Band enforcement using MAC Authentication. We have a situation where we would like to use 2 vlans for the same role. The vlans would be automatically assigned via some mechanism. For example, we have more Students than one vlan can

Re: [PacketFence-users] users stay in registration VLAN after authentication success

2018-01-16 Thread tom lo via PacketFence-users
Hi Ludovic, We are still using ZoneDirector, not the newer SmartZone controller, and seems Packetfence start supporting SmartZone from version 6.5 In version 6.4, which we are using, there are only one switch type for select "Ruckus Wireless Controllers". So you would suggest we to try another

[PacketFence-users] No translation on "Enabling network access" page

2018-01-16 Thread Virginie Girou via PacketFence-users
Hello, We use a packetfence as captive portal in our university (v 7.0) using french language but first installed in v 6.4 and then updated. I've installed another one directly in 7.3 for test before production, but the entire "Enabling network access" page stays in english even if i choose

Re: [PacketFence-users] Successfully passed 802.1x auth but nonetwork access

2018-01-16 Thread Yan via PacketFence-users
Hi Fabrice, So is there any problem within my configuration which I posted in my previous mail ? I ask our network team if cisco acs needs to join domian server, they said no need. They said they only need to add AD server in cisco ACS for authentication. What??s the difference between using

Re: [PacketFence-users] firewalling for inline on the packetfence server

2018-01-16 Thread lists via PacketFence-users
Hi Fabrice, On 16-1-2018 14:54, Fabrice Durand via PacketFence-users wrote: Hello, you can play with iptables.conf in the conf directory in order to add your custom rules. So, in the case of limiting outgoing traffic for inline nat clients to http/https/dns, do you mean adding lines

Re: [PacketFence-users] pf with ruckus smartzone not working for me

2018-01-16 Thread Fabrice Durand via PacketFence-users
Hello Barry, when the error happen , is it when you try to do web-auth or out of band ? (if you have the httpd.portal.access lines when you hit the portal) Because it looks that packetfence is not able to fetch your ip address. Also to reevaluate an access on Ruckus SmartZone packetfence use

Re: [PacketFence-users] users stay in registration VLAN after authentication success

2018-01-16 Thread Ludovic Zammit via PacketFence-users
Hello there, PacketFence two different switch module, there is a legacy one and the other one is meant for the SmartZone controller. Have you tried to change the switch module ? Thanks, Ludovic Zammit lzam...@inverse.ca :: +1.514.447.4918 (x145) ::

[PacketFence-users] users stay in registration VLAN after authentication success

2018-01-16 Thread tom lo via PacketFence-users
Hi, We've been using Packetfence ZEN 6.4 with Ruckus ZoneDirector for a while, to authentication user against AD before putting them into production VLAN. It was working fine until recently that users report that when they doing authentication in captive portal, they start seeing the message

Re: [PacketFence-users] Number of devices to connect to the network

2018-01-16 Thread Fabrice Durand via PacketFence-users
Hello Eugene, this is exactly where you have to control that. So just set a limit on the roles where you want to limit the number of devices per users. Regards Fabrice Le 2018-01-16 à 02:01, E.P. via PacketFence-users a écrit : > > It sounds close to the number of devices/nodes a user can

Re: [PacketFence-users] PKI provisioning configuration for Apple OS/iOS

2018-01-16 Thread Fabrice Durand via PacketFence-users
I can't find in the doc where it's define to 9191 ?! Le 2018-01-16 à 01:00, E.P. a écrit : > > Great breakdown, thank you! > > What is the correct port number, Fabrice, in “pki_provider.conf” file ? > > You showed yours with 9393, but in the guide it is 9191 > >   > >   > > *From:*Fabrice Durand

Re: [PacketFence-users] Number of registered devices notification

2018-01-16 Thread Fabrice Durand via PacketFence-users
Hello Raphael, can you try that: in /usr/local/pf/ patch -p1 --dry-run < status.diff and if there is no error: patch -p1 < status.diff and restart packetfence. Let me know if it works, i will push it in the main code. Regards Fabrice Le 2018-01-15 à 18:01, Raphael Dias via

Re: [PacketFence-users] firewalling for inline on the packetfence server

2018-01-16 Thread Fabrice Durand via PacketFence-users
Hello, you can play with iptables.conf in the conf directory in order to add your custom rules. Regards Fabrice Le 2018-01-15 à 11:18, lists via PacketFence-users a écrit : > Hi, > > We're using packetfence in inline modus for our wifi (10.10.10.0/24) > segment. The external packetfence

[PacketFence-users] Number of devices to connect to the network

2018-01-16 Thread E.P. via PacketFence-users
Guys, We are still at the early phases of PF deployment and only now looking into AD based authentication for wireless devices Is there any way to limit the number of user devices that can be connected by one user? Let's say the user uses his/her laptop and roams around remote sites where we

Re: [PacketFence-users] PKI provisioning configuration for Apple OS/iOS

2018-01-16 Thread E.P. via PacketFence-users
Great breakdown, thank you! What is the correct port number, Fabrice, in “pki_provider.conf” file ? You showed yours with 9393, but in the guide it is 9191 From: Fabrice Durand via PacketFence-users [mailto:packetfence-users@lists.sourceforge.net] Sent: Monday, January 15, 2018 6:01 AM

Re: [PacketFence-users] Number of devices to connect to the network

2018-01-16 Thread E.P. via PacketFence-users
It sounds close to the number of devices/nodes a user can register which is configurable under Configuration-Policies and access control-Roles, but we don't allow this luxury to anyone yet. Just regular network admission control based on the active AD account From: E.P.

[PacketFence-users] pf with ruckus smartzone not working for me

2018-01-16 Thread Support Procyon Networks via PacketFence-users
Dear Reader, I got problems to use pf in combination with a ruckus smartzone controller, out of band, webauth. I want users who connect to the guest ssid to get the portal and register with there email. I configured the smartzone controller according to