Hi Fabrice, thank you so much!

Last question:


When I finished the configuration, I will look:

  *   Ldap in “Authentication source”. I believe if I did the LDAP 
configuration via CLI I don’t need to do the same configuration in the 
“Authentication Source”, right?

  *   How Can I link this configuration with the connection profile? I need to 
create I new Realm and associate the new Realm with the LDAP configuration? I 
asked that because I just remember that’s possible to add a “AD Domain” to the 
realm.

I will access this PacketFence tomorrow. When I finished the tests, I will send 
a message to confirm that the configuration works fine.

Thank you.


________________________________
De: Durand fabrice <[email protected]>
Enviado: segunda-feira, 25 de março de 2019 21:37
Para: Felipe Rodrigues; [email protected]
Assunto: Re: [PacketFence-users] EAP Authentication + LDAP


Hello Felipe,


Le 19-03-25 à 17 h 03, Felipe Rodrigues a écrit :
Hi Fabrice,

Thank you for the answer! I will try that soon.

Just for curious: Is it possible to do this integration in the web interface?


not yet but but nothing really hard to add.

Regards

Fabrice



________________________________
De: Fabrice Durand via PacketFence-users 
<[email protected]><mailto:[email protected]>
Enviado: segunda-feira, 25 de março de 2019 16:38
Para: 
[email protected]<mailto:[email protected]>
Cc: Fabrice Durand
Assunto: Re: [PacketFence-users] EAP Authentication + LDAP


Hello Felipe,


Le 19-03-25 à 09 h 38, Felipe Rodrigues via PacketFence-users a écrit :

Hi guys!

Can anyone help me to configure EAP Authentication (802.1x) with OpenLDAP 
server? I looked the PacketFence manual, chapter 16, about Advanced Radius 
Configuration and found the information about “EAP Authentication against 
OpenLDAP.


The installation guide said to configure the OpenLDAP connection in 
/usr/local/pf/raddb/modules/ldap and change the file packetfence-tunnel but 
when I can’t find the file in these locations.


It's in /usr/local/pf/conf/radiusd/packetfence-tunnel.


My scenario: Today, I’m working with an OpenLDAP server to do the 
authentication on network. I have been using a web portal to connect to LDAP 
base and validated the user credentials. I want to increase security with 
802.1x but I don’t have option to change my LDAP server to another database 
like Microsoft AD today.

I understand that’s possible to connect Packetfence with my OpenLDAP (using the 
FreeRadius module) and then, configure 802.1x authentication. I’m right about 
that?


Yes

If anyone have a tutorial or any valid information about that configuration, 
let me know.

First you need to configure your ldap connection in  mods-available/ldap and 
restart radiusd.

If it fail to restart then fix your configuration (ldap of course).

When it's done then edit packetfence-tunnel and add you ldap server.


Regards

Fabrice



Thanks!





_______________________________________________
PacketFence-users mailing list
[email protected]<mailto:[email protected]>
https://lists.sourceforge.net/lists/listinfo/packetfence-users<https://nam04.safelinks.protection.outlook.com/?url=https%3A%2F%2Flists.sourceforge.net%2Flists%2Flistinfo%2Fpacketfence-users&data=02%7C01%7C%7C1e5501e0c6be4de8374308d6b183428b%7C84df9e7fe9f640afb435aaaaaaaaaaaa%7C1%7C0%7C636891574645657135&sdata=y%2FgIb4cXOPYJwgiRQoV%2B0cROTgjQYMvHqU2Cw%2Fu4dlg%3D&reserved=0>


--
Fabrice Durand
[email protected]<mailto:[email protected]> ::  +1.514.447.4918 (x135) ::  
www.inverse.ca<https://nam04.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.inverse.ca&data=02%7C01%7C%7C1e5501e0c6be4de8374308d6b183428b%7C84df9e7fe9f640afb435aaaaaaaaaaaa%7C1%7C0%7C636891574645667152&sdata=zn%2Fic0jMdqNYbf19Mh5A3Bfbdb6TYcYiVDAPRxxqPGo%3D&reserved=0>
Inverse inc. :: Leaders behind SOGo 
(http://www.sogo.nu<https://nam04.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.sogo.nu&data=02%7C01%7C%7C1e5501e0c6be4de8374308d6b183428b%7C84df9e7fe9f640afb435aaaaaaaaaaaa%7C1%7C0%7C636891574645677157&sdata=elE1hEOZ2ySPMjiu69kC7x1bg6oB0X01YsZd5FzDoA4%3D&reserved=0>)
 and PacketFence 
(http://packetfence.org<https://nam04.safelinks.protection.outlook.com/?url=http%3A%2F%2Fpacketfence.org&data=02%7C01%7C%7C1e5501e0c6be4de8374308d6b183428b%7C84df9e7fe9f640afb435aaaaaaaaaaaa%7C1%7C0%7C636891574645687162&sdata=WSjHyOo%2Bwq%2BuKHPRdPaPJ2yxYxCMay6A7xKfBEpHtNc%3D&reserved=0>)
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to