hi,

could you help me because I have problems with the configuration of Getting
Started and I'm not working 802.1x protocol, I'm using a cisco 2960G switch
and I have virtualized environments, to connect the computer to
authenticate the switch gives me the following error:

switch  cisco 2960g:
00:15:38: %AUTHMGR-5-START: Starting 'dot1x' for client (0c54.a557.xxxx) on
Interface Gi0/12 AuditSessionID 0A1E630300000007000E4FEB
00:15:39: %LINK-3-UPDOWN: Interface GigabitEthernet0/12, changed state to up
00:15:40: %LINEPROTO-5-UPDOWN: Line protocol on Interface
GigabitEthernet0/12, changed state to up
00:16:07: %DOT1X-5-FAIL: Authentication failed for client (0c54.a557.xxxx)
on Interface Gi0/12 AuditSessionID 0A1E630300000007000E4FEB
00:16:07: %AUTHMGR-7-RESULT: Authentication result 'fail' from 'dot1x' for
client (0c54.a557.9e80) on Interface Gi0/12 AuditSessionID
0A1E630300000007000E4FEB
00:16:07: %AUTHMGR-5-FAIL: Authorization failed or unapplied for client
(0c54.a557.9e80) on Interface Gi0/12 AuditSessionID 0A1E630300000007000E4FEB
00:16:09: %AUTHMGR-5-START: Starting 'dot1x' for client (0c54.a557.xxxx) on
Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92
00:16:18: %DOT1X-5-FAIL: Authentication failed for client (0c54.a557.xxx)
on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92
00:16:18: %AUTHMGR-7-RESULT: Authentication result 'no-response' from
'dot1x' for client (0c54.a557.9e80) on Interface Gi0/12 AuditSessionID
0A1E630300000008000ECA92
00:16:18: %AUTHMGR-7-FAILOVER: Failing over from 'dot1x' for client
(0c54.a557.xx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92
00:16:18: %AUTHMGR-5-START: Starting 'mab' for client (0c54.a557.xxx) on
Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92
00:16:18: %MAB-5-SUCCESS: Authentication successful for client
(0c54.a557.xx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92
00:16:18: %AUTHMGR-7-RESULT: Authentication result 'success' from 'mab' for
client (0c54.a557.9e80) on Interface Gi0/12 AuditSessionID
0A1E630300000008000ECA92
00:16:18: %AUTHMGR-5-VLANASSIGN: VLAN 101 assigned to Interface Gi0/12
AuditSessionID 0A1E630300000008000ECA92
00:16:19: %AUTHMGR-5-SUCCESS: Authorization succeeded for client
(0c54.a557.xx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92

Radius log
Dec  5 12:48:12 NAC-CRDTC auth[11115]: (71) Login incorrect (eap_peap:
(TLS) Alert read:fatal:unknown CA): [host/DESKTOP-C64OFGE.creditic.local]
(from client 10.30.99.3/32 port 50012 cli 0c:54:a5:57:9e:80)
Dec  5 12:48:24 NAC-CRDTC auth[11115]: (73) Login OK: [0c54a5579e80] (from
client 10.30.99.3/32 port 50012 cli 0c:54:a5:57:9e:80)

Configuracion Ad en packetfence:
Identifier: prodad01
Workgroup: creditic
DNS name of the domain: creditic.local
This server's name: admin.nac
Sticky DC: creditic.local
Active Directory server: 10.30.50.5
DNS server(s): 10.30.50.5
OU: Computers

Authentication Source creditic
Name: creditic
Description: AD creditic
Host: 10.30.50.5 port: 389
SSL Verify Mode: none
Dead duration: 60
Connection timeout: 1
Request timeout: 5
Response timeout: 10
Base DN: DC=creditic, DC=local
Scope: Subtree
Username Attribute: sAMAccountName
Email Attribute: admin.nac
Bind DN: CN=admin NAC,CN=Users,DC=creditic,DC=local

Please could you give me some guidance as it is for a university project.


-- 
Estaré atento a sus comentarios.
atte.
Matías Fuentes Valdés
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to