Re: [PacketFence-users] Administrative Rule RADIUS Reply

2023-04-28 Thread Fabrice Durand via PacketFence-users
Hello guys, the issue looks to be the REST-Http-Status-Code and it should be 401. I have checked the code and it looks to be ok. Here ( https://github.com/inverse-inc/packetfence/blob/devel/lib/pf/radius.pm#L1045) we return $RADIUS::RLM_MODULE_FAIL who should return a 401 (

Re: [PacketFence-users] Administrative Rule RADIUS Reply

2023-04-28 Thread IT Mercenary via PacketFence-users
Happy Friday! Using /usr/local/pf/bin/pftest authentication USERNAME "", I can see that the user is matching the deny rule as desired. [image: image.png] Here is a screenshot of the authentication.conf file. I think this contains the relevant parts but let me know if I should send you the

Re: [PacketFence-users] Administrative Rule RADIUS Reply

2023-04-28 Thread Zammit, Ludovic via PacketFence-users
Hello, You could use the command: /usr/local/pf/bin/pftest authentication USERNAME "" You will see if you match properly your rule, it should bring Administration right. Could you show me your conf/authentication.conf? Thanks, Ludovic Zammit Product Support Engineer Principal Lead

Re: [PacketFence-users] Administrative Rule RADIUS Reply

2023-04-28 Thread IT Mercenary via PacketFence-users
Hi All, I'm hoping for some guidance on how to change the Radius Reply for CLI authentication when users are not a member of the specified group. The group is being matched as the RADIUS reply indicates the right administration rule is being matched (catch all). The behavior I was getting:

Re: [PacketFence-users] group membership

2023-04-28 Thread Zammit, Ludovic via PacketFence-users
Hello, All your users are under the OU Users or not ? Thanks, Ludovic Zammit Product Support Engineer Principal Lead Cell: +1.613.670.8432 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: