Hi Mathias,

Have you tried doing a radius debug and seeing what is sent from the switch?

Also, check the packetfence.log and radius.log files. They give clues as to 
what is happening.

>From the Packetfence installation Guide - section 12.3 - 
>https://packetfence.org/doc/PacketFence_Installation_Guide.html

raddebug -t 300 -f /usr/local/pf/var/run/radiusd.sock

Regards,

Peter Truax
Network Administrator
St. Martin's University

From: Mathias Didier via PacketFence-users 
<[email protected]>
Sent: Thursday, September 20, 2018 4:21 AM
To: [email protected]
Cc: Mathias Didier <[email protected]>
Subject: [PacketFence-users] Radius Reply: Reply-Message = "max nodes per pid 
met or exceeded"

Hi Guys


I just can't get Packetfence 802.1x running with a cisco sg 350 switch.

I followed exactly the instructions in the documentation:
https://packetfence.org/doc/PacketFence_Installation_Guide.html#_getting_started

With the advices for the switch described here:
https://packetfence.org/doc/PacketFence_Network_Devices_Configuration_Guide.html#_cisco_small_business

I configured a Windows10 Client as described here:
802.1x Setup for Windows 10 - Powered by Kayako Help Desk 
Software<https://support.plymouth.edu/index.php?/Knowledgebase/Article/View/572/375/8021x-setup-for-windows-10>

Someone had a similar problem that has been solved with a spelling mistake in 
the authentication sources:
https://sourceforge.net/p/packetfence/mailman/message/36374161/

But I really don't know what should be wrong, here is my authentication source:

Name: Users
Description: Users
Host: x.x.x.x:389

Connection timeout: 5
Request timeout: 10
Response timeout: 10

Base DN: OU=Users,DC=domain,DC=local (I have also tested without OU)
Scope: Base Object
Username Attribute: sAMAccountName
Email attribute: mail
Bind DN: CN=S_Packetfence,OU=Users,DC=domain,DC=local
Shuffle: true

Test: Success! LDAP connect, bind and search successful

Associated Realms: default, null (I have also tested without a realm)

Authentication Rules:
Name: Users
Matches: All
Actions: Role = default (I defined 5 nodes per user for default, also tested 
with new role )
Access Duration = 5 days

I also tried with following these instructions:
http://schoolsysadmin.blogspot.com/2015/11/packetfence-configuration.html
Step by Step configure switch sg300 with 
packetfence<http://packetfence-users.narkive.com/zbTxCOUs/step-by-step-configure-switch-sg300-with-packetfence>


Please help me, I am struggling since weeks... and can't get it running...
Best regards
Mathias
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to