Re: [PacketFence-users] new gui domains config

2015-06-17 Thread Louis Munro
On Jun 17, 2015, at 13:57 , heupink heup...@gmail.com wrote: - Question: shouldd 'DNS name of the domain' perhaps better be called REALM? Or are we not supposed to enter the realm in capitals there? I suppose so. - One thing that is NOT working better (and I had really hoped it would)

Re: [PacketFence-users] new gui domains config

2015-06-17 Thread Louis Munro
On Jun 17, 2015, at 14:33 , Louis Munro lmu...@inverse.ca wrote: - Question: shouldd 'DNS name of the domain' perhaps better be called REALM? Or are we not supposed to enter the realm in capitals there? I suppose so. I did not quite finish that sentence. I do think that section of

Re: [PacketFence-users] new gui domains config

2015-06-17 Thread heupink
Hi Louis, list, On 6/17/2015 20:33, Louis Munro wrote: Can you see if there are pid files for pfdns in /usr/local/pf/var/run ? And what pid they contain if they do exist? There are NO pid files for packetfence in /usr/local/pf/var/run. In fact: find -name *.pid | grep dns tells me there are NO

Re: [PacketFence-users] How to assign VLAN based on switch IP for a Role?

2015-06-17 Thread Louis Munro
On Jun 17, 2015, at 15:15 , Rhoads, Robert W. rhoa...@danvilleva.gov wrote: Hello All, I am new to PF and am testing it in an isolated network for evaluation purposes and figure out how it works. I am using version 5.1.0. I have been able to get it up and running using RADIUS and

Re: [PacketFence-users] new gui domains config

2015-06-17 Thread Louis Munro
As I mentioned earlier, the issue may be with “watch”. Try disabling it for a while. It may be causing more trouble than it’s worth. -- Louis Munro lmu...@inverse.ca :: www.inverse.ca +1.514.447.4918 x125 :: +1 (866) 353-6153 x125 Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and

[PacketFence-users] How to assign VLAN based on switch IP for a Role?

2015-06-17 Thread Rhoads, Robert W.
Hello All, I am new to PF and am testing it in an isolated network for evaluation purposes and figure out how it works. I am using version 5.1.0. I have been able to get it up and running using RADIUS and 802.1x using AD auth and then AD for registration/VLAN assignment which I then set

Re: [PacketFence-users] new gui domains config

2015-06-17 Thread heupink
Hi, I disabled packetfence on boot, disabled cron watch, restarted, and there were two remaining socket files in /usr/local/pf/var/run (pfconfig.sock and radiusd.sock) Deleted those, then: service packetfence start, and YES the pfdns.pid was created, and gui shows everything as running.

Re: [PacketFence-users] new gui domains config

2015-06-17 Thread heupink
On 6/17/2015 20:33, Louis Munro wrote: Perhaps something is missing here, but I don’t see the problem. The dashboard says they are running and yet they are? But I'm receiving emails that they are NOT running, and then pf tries to restart them. :-) I'll take a look at your suggestions. MJH

Re: [PacketFence-users] new gui domains config

2015-06-17 Thread heupink
Hi Louis, list, So, today I reinstalled packetfence, from scratch, debian wheezy x64, with the stock 3.6.6 samba. Installation went fine, and things look a lot better. Some remarks: - the winbind config through the gui worked fine, this time. Not sure why, could be the samba version used:

Re: [PacketFence-users] new gui domains config

2015-06-17 Thread Louis Munro
I suspect foul play between watch and pfdns. If you can, stop all service. Make sure to disable “watch. Kill any service that would not be stopped. Reboot if you have to. Then restart the services. See if they leave their pid files in the var/run directory. -- Louis Munro lmu...@inverse.ca

Re: [PacketFence-users] DHCP issue in Registration and Isolation vlans

2015-06-17 Thread Abdelghafour Rakhma
Can Someone help! I'm really stuck here..! Regards On Tue, Jun 16, 2015 at 4:16 PM, Abdelghafour Rakhma rakhma.abdelghaf...@gmail.com wrote: Hello Again! in PF 5.1.0 when I plug a device in the switch where i've configured mab and 802.1X MAC auth! the port is set on VLAN 2 (registration)

Re: [PacketFence-users] packetfence configuration

2015-06-17 Thread Durand fabrice
Hi Steve, we did simple documentation to configure packetfence in inline mode and out of band mode. http://www.packetfence.org/downloads/PacketFence/doc/PacketFence_Inline_Deployment_Quick_Guide_ZEN-5.1.0.pdf

Re: [PacketFence-users] PF DB server setup

2015-06-17 Thread Durand fabrice
Hello, have a look in /usr/local/pf/db/ directory, you have the latest mysql schema to use. Also define that in pf.conf: [database] # # database.pass # # Password for the mysql database used by PacketFence. pass=packet # # database.db # # Name of the mysql database used by PacketFence. db=pf #

[PacketFence-users] 'Max nodes per user' question

2015-06-17 Thread Max McGrath
Hello. We are currently running version 5.1. I have a lot of different roles defined and all of them are set to *0* for *Max nodes per user*. We have finally run into an issue that is forcing us to set a limit for this. The details don't matter, but for two specific roles we plan on setting

Re: [PacketFence-users] DHCP issue in Registration and Isolation vlans

2015-06-17 Thread Durand fabrice
Hello Abdelghafour, Can you paste the switch port configuration where packetfence has been plugged ? The result of: ifconfig If you use tcpdump -i eth0.2 do you have traffic ? Regards Fabrice Le 2015-06-17 20:56, Abdelghafour Rakhma a écrit : Can Someone help! I'm really stuck here..!

Re: [PacketFence-users] 802.1x with ntlm_auth and long computer names

2015-06-17 Thread Durand fabrice
Hi Dennis, i got a close issue like that last week because of a regression has been included in the code. Can you try to apply this patch: https://github.com/inverse-inc/packetfence/commit/2c0a27b217931280d6ef4fe80d144e65b454e7a9.diff Regards Fabrice Le 2015-06-17 05:22, Dennis Bühring a

[PacketFence-users] 802.1x with ntlm_auth and long computer names

2015-06-17 Thread Dennis Bühring
Hi, i have a problem when PacketFence is trying to authenticate a computer account against our Active Directory and the computer name is longer than 15 characters. If i shorten the computername to match the NetBIOS Name it works. Wed Jun 17 10:37:04 2015 : Auth: Login incorrect (mschap: External

Re: [PacketFence-users] new gui domains config

2015-06-17 Thread heupink
Hi Denis, We started this whole install/journey with the sernet packages in pf 4.7.0. Then, with pf 5.10 we experienced these problems. To become more 'main stream' we went back to the wheezy backports samba packages (4.1.17). On our main fileservers/DC's we use only the sernet packages, and

Re: [PacketFence-users] Database Issues with PF 5.1???

2015-06-17 Thread Fabrice DURAND
Does pfdhcplistener work on your install ? Can you query the database with: select * from locationlog where mac=60:eb:69:56:4e:6e; What after : Jun 17 14:51:22 httpd.portal(13792) INFO: Instantiate a new iptables modification method. pf::ipset (pf::inline::get_technique) Regards Fabrice Le

Re: [PacketFence-users] Database Issues with PF 5.1???

2015-06-17 Thread Nathan, Josh
The next lines from packetfence.log were: Jun 17 14:51:23 httpd.portal(13792) INFO: Matched MAC '60:eb:69:56:4e:6e' to IP address '192.168.11.244' using OMAPI (pf::iplog::mac2ip) Jun 17 14:51:23 httpd.portal(13792) INFO: Matched MAC '60:eb:69:56:4e:6e' to IP address '192.168.11.244' using OMAPI

[PacketFence-users] PF DB server setup

2015-06-17 Thread Krzysztof Adamski
I'm putting the MySQL db on a separate DB server, what program do I need to run on my packetfence server to create the db on this DB server? There is no packetfence code installed on the DB server. -- Krzysztof Adamski | Network Development | University Information Technology 010 Steacie

Re: [PacketFence-users] packetfence configuration

2015-06-17 Thread Louis Munro
I haven’t seen anything online that I would recommend. Most of what I have seen is outdated or incorrect. IMHO tutorials are a crutch that can do more harm than good. I understand the value of an example but unless they are well written by people who know what they are doing, they will fail to

[PacketFence-users] packetfence configuration

2015-06-17 Thread Weissenburger, Steven C
I'm new to Packetfence and wondering if there are any good tutorials online. I have Packefence 5.0.2 running on a VM but having a hard time getting this going and not really a Linux expert. Any assistance and guidance is much appreciated. Thanks, Steve