Hi Ian,

First, I think you are the first one to try inline mode and guests. The
mix of the two features was not tested before. I completely forgot.
Nonetheless, let's make it work, shouldn't be hard, mostly firewall and
Apache ACLs to fix.

> 
> If anyone is about - I've got a 2 leg setup, an "Inline portal" nic,
> and a "main network" nic.  My sponsorship activation email gets sent
> ok.  However, I get a 403 when trying to follow the sponsor activate
> link when accessing using the main network nic (that's with or without
> port 1443), whereas the activate link WORKS using the Inline network
> nic.  My admins are likely to be using fixed workstations elsewhere on
> the main network.  Has anyone else seen that - or is it expected?
> 

So, sponsor links work from inline and not from the rest of the network?
This is upside down from what I expected..

Is your production subnet in the [trapping] range = ... parameter?

> Secondly - when using the activation email, I don't appear to get
> logged in.  If the password fails, I'm told so. 

What do you mean 'get logged in'?

> However, logging in
> to the sponsor activation link on the inline interface I get a 404.
> Looking in the web admin access logs, it says
> "/usr/local/pf/html/admin/activate" missing.  I've looked in that
> location, is it possible I'm missing a file?  I downloaded the 3.3.1
> VPX in this case, and yum upgraded to 3.3.2.  I've checked the 3.3.2
> vpx and said file/dir wasn't there either.

We rely on extensive URL rewriting inside apache so most links will not
match a filesystem 'file'. I think the 404 is caused by the Apache ACLs.
Give me an example activation link from the email (and replace the
hostname with the of your setup IP) and post your var/conf/httpd.conf
and the var/conf/captive* files.

Also, logging in from outside the inline VLAN should work just fine. How
did you configure it?

Cheers!
-- 
Olivier Bilodeau
obilod...@inverse.ca  ::  +1.514.447.4918 *115  ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence
(www.packetfence.org)

------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and 
threat landscape has changed and how IT managers can respond. Discussions 
will include endpoint security, mobile security and the latest in malware 
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to