> On Oct 23, 2015, at 16:02 , Dale Whiteaker-Lewis <[email protected]> wrote: > > Using PF 5.4.0. I've noticed that, whether I attempt to reassign a node's > VLAN via a Violation (and its associated role), or via vlan_filters.conf, > that value is overridden if a rule in my AD Source assigns the user to a > role, which results in it setting the RADIUS Option 81, > (Tunnel-Private-GroupID). Is this behavior expected, or does it point to > misconfiguration? > Put another way, if a rule in a source assigns the users role and VLAN, is > there a way for a violation of VLAN Filter to overrule this?
That is not the expected behaviour. A clarification though: the radius Tunnel-Private-GroupID attribute (not option) is always returned. The value for it will depend on your sources, filters and violations. Show us some logs please... -- Louis Munro [email protected] :: www.inverse.ca +1.514.447.4918 x125 :: +1 (866) 353-6153 x125 Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence (www.packetfence.org)
------------------------------------------------------------------------------
_______________________________________________ PacketFence-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/packetfence-users
