Re: [PacketFence-users] 802.1x with Machine Auth issue

2013-11-15 Thread Fabrice DURAND
Hello, is the mac address is the same in dot1x and mac-auth ? Do you have a ip phone between the windows computer and the switch ? Do you have switch log ? Regards Fabrice Le 2013-11-14 17:03, Thomas Tsai a écrit : > I've combed the docs and the lists, and don't see this particular issue > rai

Re: [PacketFence-users] How to monitor Nessus? - Your system is being scanned

2013-11-15 Thread Fabrice DURAND
In fact you have to install nessus on the current server or on a second server and configure scan in packetfence Configuration -> scan: Engine : Nessus ... Regards Fabrice Le 2013-11-15 16:48, forbmsyn a écrit : Hi Fabrice, Just figured out nessus may not be running because I could neither

Re: [PacketFence-users] Active Directory authentication

2013-11-15 Thread Fabrice DURAND
Yes of course there is traffic, but what inside ? Do you took a pcap file and check if ldap traffic was normal ? Regards Fabrice Le 2013-11-15 17:46, forbmsyn a écrit : Hi Fabrice, Changing the scope didn't help. And there is ldap traffic when I login from portal. Regards, Jacky On Fri

Re: [PacketFence-users] How to create an user account for new device to sign in.

2013-11-15 Thread forbmsyn
Thank you Fabirce. That works. Regards, Jacky On Fri, Nov 15, 2013 at 3:32 PM, Fabrice DURAND wrote: > Hello Jacky, > > did you select local as an authentication source on the default portal > profile ? > > Regards > Fabrice > > > -

Re: [PacketFence-users] How to monitor Nessus? - Your system is being scanned

2013-11-15 Thread forbmsyn
Hi Fabrice, Just figured out nessus may not be running because I could neither see it under "Status -> Services" from PF Web UI, nor through ps -ef in the linux box, even I have chosen it as scan Engine. How do I enable nessus within PF? Thanks. Regards, Jacky On Fri, Nov 15, 2013 at 3:27 P

Re: [PacketFence-users] Active Directory authentication

2013-11-15 Thread forbmsyn
Hi Fabrice, Changing the scope didn't help. And there is ldap traffic when I login from portal. Regards, Jacky On Fri, Nov 15, 2013 at 3:26 PM, Fabrice DURAND wrote: > Hello Jacky, > > try scope=sub and maybe use tcpdump on the port 389 to see the ldap > traffic. > > Regards > Fabrice > > >

Re: [PacketFence-users] Web portal

2013-11-15 Thread Louis Munro
Hi Jason, What kind of error are you getting when you try to connect to the GUI? Make sure the httpd.admin service is really running: # pgrep -lf httpd.admin checkout if the process is actually listening for connections: # netstat -tnlp | grep 1443 Then if it really is, run tcpdump and try t

Re: [PacketFence-users] PacketFence on AWS EC2

2013-11-15 Thread Fabrice DURAND
Hello Kyle, it´s technically possible but we have to do custom stuff and be aware about the security. Regards Fabrice Le 2013-11-12 15:40, Kyle McLaren a écrit : Hey all, I've been googling all day but can't find an answer to my question: can you run PacketFence from an AWS Ubuntu instance

Re: [PacketFence-users] How to create an user account for new device to sign in.

2013-11-15 Thread Fabrice DURAND
Hello Jacky, did you select local as an authentication source on the default portal profile ? Regards Fabrice Le 2013-11-12 18:23, forbmsyn a écrit : So fare when a new device connected on the captive-portal login page I can use the admin account to sign in. All the users I create from the

Re: [PacketFence-users] VLAN-Enforcement-Mode - works as designed?

2013-11-15 Thread Fabrice DURAND
Hello Mark, where is connected the registration interface ? Is the packetfence network interface card is directly connected to the switch (like eth1 on a port access 302) ? Regards Fabrice Le 2013-11-13 04:54, Mark Gmeiner a écrit : So, I've got PacketFence up and running now - partly ... M

Re: [PacketFence-users] How to monitor Nessus? - Your system is being scanned

2013-11-15 Thread Fabrice DURAND
Hello Jacky, what happen in the nessus´s admin interface, do you see the scanning task running ? Regards Fabrice Le 2013-11-13 14:49, forbmsyn a écrit : Now the device is always under "Your system is still being scanned right now. The process ." status and I can not do anything wit

Re: [PacketFence-users] Active Directory authentication

2013-11-15 Thread Fabrice DURAND
Hello Jacky, try scope=sub and maybe use tcpdump on the port 389 to see the ldap traffic. Regards Fabrice Le 2013-11-13 18:26, forbmsyn a écrit : I created a Active Directory "Sources" from PF Web UI call "testpf1", and tested it successfully. The I created a user call testpf2 on our Windo

Re: [PacketFence-users] Captive portal with facebook and gmail

2013-11-15 Thread Fabrice DURAND
Hello, if you configure packetfence in inline mode, by default all the packet will be forward on the management interface (you can change that). By the way you can easily configure in the source a facebook and gmail source and select these source in the default portal profile. In the google and

Re: [PacketFence-users] Web portal

2013-11-15 Thread Fabrice DURAND
Hello Jason, type=vlan-guest ? Regards Fabrice Le 2013-11-15 11:56, Decoursey, Jason B CADET MIL USA USMA a écrit : After fixing some bugs I needed to restart packetfence but now I cannot access the web portal and don't know how to fix it. I am on a test machine on a test network. I set t

Re: [PacketFence-users] Using PacketFence with Aradial RADIUS server

2013-11-15 Thread Fabrice DURAND
Hello Nigel, you can probably packetfence´s freeradius as a proxy for your own radius server. Regards Fabrice Le 2013-11-15 13:54, Nigel Quinn a écrit : Hi, I am looking to use PacketFence with our Aradial RADIUS server for user auth and user accounting. I haven't seen anyone do this bef

Re: [PacketFence-users] Remote Sites not switching to Registration or Guest vlan

2013-11-15 Thread Louis Munro
Hi Dan, Try raising the loglevel for log4perl.category.pf.SNMP to at least INFO in /usr/local/pf/conf/log.conf. That should give you a bit more information to work with. Regards, -- Louis Munro lmu...@inverse.ca :: www.inverse.ca +1.514.447.4918 *125 :: +1 (866) 353-6153 Inverse inc. :: Lea

Re: [PacketFence-users] Remote Sites not switching to Registration or Guest vlan

2013-11-15 Thread Fletcher Haynes
This looks fun... =) Has it stopped working on all of your switches, or just this one? Can you issue debug mab all on your switch and try again and paste the result, or was that what you pasted? On Fri, Nov 15, 2013 at 11:20 AM, Dan Nelson wrote: > I have been using packetfence for years and

[PacketFence-users] Web portal

2013-11-15 Thread Decoursey, Jason B CADET MIL USA USMA
After fixing some bugs I needed to restart packetfence but now I cannot access the web portal and don't know how to fix it. I am on a test machine on a test network. I set the host and domain as localhost and localhost. Any ideas? My relevant configs are below: [root@localhost /]# service pack

[PacketFence-users] Using PacketFence with Aradial RADIUS server

2013-11-15 Thread Nigel Quinn
Hi, I am looking to use PacketFence with our Aradial RADIUS server for user auth and user accounting. I haven't seen anyone do this before on the mailing lists, have you any suggestions on a good place to start to configure this? Regards, Nigel NSSLGlobal Limited Support Desk Telephone +44

[PacketFence-users] Remote Sites not switching to Registration or Guest vlan

2013-11-15 Thread Dan Nelson
I have been using packetfence for years and had the remote sites working and now they are not working. I have been racking my brain to try and figure this out. I am running 3.6.1. In the Packetfence.log it shows but doesn’t switch the port over. I am using MAB authentication and I see it hit