> On Oct 23, 2015, at 16:02 , Dale Whiteaker-Lewis <[email protected]> wrote:
> 
> Using PF 5.4.0.  I've noticed that, whether I attempt to reassign a node's 
> VLAN via a Violation (and its associated role), or via vlan_filters.conf, 
> that value is overridden if a rule in my AD Source assigns the user to a 
> role, which results in it setting the RADIUS Option 81, 
> (Tunnel-Private-GroupID).  Is this behavior expected, or does it point to 
> misconfiguration? 
> Put another way, if a rule in a source assigns the users role and VLAN, is 
> there a way for a violation of VLAN Filter to overrule this? 

That is not the expected behaviour.

A clarification though: the radius Tunnel-Private-GroupID attribute (not 
option) is always returned.
The value for it will depend on your sources, filters and violations.

Show us some logs please...

--
Louis Munro
[email protected]  ::  www.inverse.ca 
+1.514.447.4918 x125  :: +1 (866) 353-6153 x125
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence 
(www.packetfence.org)


------------------------------------------------------------------------------
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to