Hi Fabrice, in Configuration / policies and Access Control / Switches / new 
switch / default in the Type field I don't see OpenVpn. What should I do to 
find it? Do I need to install the Openvpn module on Debian as indicated in the 
guide: 
https://www.packetfence.org/doc/PacketFence_Network_Devices_Configuration_Guide.html
 in section 7.2 
<https://www.packetfence.org/doc/PacketFence_Network_Devices_Configuration_Guide.html%20in%20section%207.2>
 ?

 

Thank you

 

Da: Fabrice Durand via PacketFence-users 
<packetfence-users@lists.sourceforge.net> 
Inviato: lunedì 19 settembre 2022 16:41
A: packetfence-users@lists.sourceforge.net
Cc: Fabrice Durand <oeufd...@gmail.com>
Oggetto: Re: [PacketFence-users] radius enforcement for captive portal on wifi 
controller

 

Hello Leonardo,

it´s more like a cli/vpn authentication you are doing.

So you can try the OpenVPN switch module , use the port 1815 and assign the 
authentication source to the default profile and you should be close.

Btw check the logs when packetfence receive the radius request (radius audit 
logs and packetfence.log) and paste them.

 

Regards

Fabrice

 

 

Le lun. 19 sept. 2022 à 08:47, leonardo.izzo--- via PacketFence-users 
<packetfence-users@lists.sourceforge.net 
<mailto:packetfence-users@lists.sourceforge.net> > a écrit :

Hello,

I have a wifi controller on which I want to implement a local captive portal 
but with authentication through an External Radius Server.

In practice, the controller  one will be used for the captive portal and 
PacketFence in radius enforcement will be used for the External Radius Server.

 

** controller side **

Authentication Mode: PAP

"Authentication Server IP": the IP address of Packetfence

"Authentication Port": 1812

"Authentication Password": I entered a password of my choice

"RADIUS Accounting": no

 

** Pf side **

On the managing interface (which is the only interface of pf) I have selected 
'radius' as "additionnal listening daemon".

I created a switch object of type 'PacketFence :: Standard' and in the 'IP 
Address / MAC Address / Range (CIDR)' field I put the wifi controller ip and in 
the radius tab I entered the private shared password previously entered in the 
controller Wifi.

 

 

If I want to use a certain source (es. Google Workspace) for the user database 
how do I set the connection profile to attach it to the listening radius on the 
management interface?

 

Thank you

 

_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net 
<mailto:PacketFence-users@lists.sourceforge.net> 
https://lists.sourceforge.net/lists/listinfo/packetfence-users

_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to