Re: [PacketFence-users] Web interface session timeout

2023-03-16 Thread Satkunas, Darren via PacketFence-users
Ensure the system clocks on the client and the server are sync'd, it appears at least one of them is skewed Darren Satkunas Sr. Software Engineer Office: +1.617.444.1234 Cell: +1.617.444.1234 Akamai Technologies 145 Broadway Cambridge, MA 02142 Connect with Us: <_blank> <_blank> <_blank> <

[PacketFence-users] Issue with clustering

2023-03-16 Thread Anne Dijkstra via PacketFence-users
Hi everyone, I hope you can help me :) For now I have an standalone Packetfence server up and running and it's working perfectly. This is my test server. For production I want a Packetfence cluster so I set-up 3 PF servers with the ZEN OVF on our VMware Synergy cluster. After deploy, I followed

[PacketFence-users] captive portal page not accessible

2023-03-16 Thread jhyanagi via PacketFence-users
Hello, I configured 2 interfaces for PacketFence as below, eth0 : Type=management + portal daemon eth1 : Type=Other + radius,portal daemon I want to set up a captive portal. My scenario is to make eth1 to exchange radius packets with the wireless APs, and to make eth0 to serve the portal page, i

Re: [PacketFence-users] DACL not applied to the switch interface

2023-03-16 Thread sgiops sgiops via PacketFence-users
Hello Fabrice, with the Catalyst_2960 user does not authenticate anymore: >From the auditing page i can grab this messages: Module-Failure-Message = "rest: Request failed: 28 - Timeout was reached" Module-Failure-Message = "rest: Server returned no data" Il giorno gio 16 mar 2023 alle ore 14:5

[PacketFence-users] Web interface session timeout

2023-03-16 Thread Steven Pfister via PacketFence-users
We are experiencing a problem with the web interface where it starts to timeout the admin session after about 30 seconds. It usually gives the option to extend the session, but it just keeps coming up over and over. I don't think any settings have changed in a while. We are still running v11.0,

Re: [PacketFence-users] DACL not applied to the switch interface

2023-03-16 Thread sgiops sgiops via PacketFence-users
Hello, I was using the Standard Cisco switch (template based). Mirko Il giorno gio 16 mar 2023 alle ore 15:20 sgiops sgiops ha scritto: > Hello Fabrice, > > with the Catalyst_2960 user does not authenticate anymore: > From the auditing page i can grab this messages: > > Module-Failure-Message

Re: [PacketFence-users] DACL not applied to the switch interface

2023-03-16 Thread Fabrice Durand via PacketFence-users
Hello Mirko, what switch module are you using in PacketFence for this switch ? Can you try the Catalyst_2960 ? Regards Fabrice Le jeu. 16 mars 2023 à 09:02, sgiops sgiops via PacketFence-users < packetfence-users@lists.sourceforge.net> a écrit : > Just upgraded to 12.2 (i was on 12.1) but when

[PacketFence-users] DACL not applied to the switch interface

2023-03-16 Thread sgiops sgiops via PacketFence-users
Hi all, i'm experiencing problems with DACL in my testing environment. I defined the access list in Configuration -> Switches -> "my switch" -> Role mapping by Access List. The test access list mapped to the role is: deny tcp any 192.168.5.0 255.255.255.0 permit ip any any The authentication and

Re: [PacketFence-users] DACL not applied to the switch interface

2023-03-16 Thread sgiops sgiops via PacketFence-users
Just upgraded to 12.2 (i was on 12.1) but when i try to save teh switch role configuration i obtain the following error messages: "Unable to validate" "AccessListMapping.0.accesslist: ACLs not supported for switch" Any hint? Mirko Il giorno gio 16 mar 2023 alle ore 09:27 sgiops sgiops ha scr

Re: [PacketFence-users] EAP-TLS Configuration

2023-03-16 Thread Mudrich, J. via PacketFence-users
Hello Fabrice, I’m getting closer. I can see a Radius request but: Module-Failure-Message = "eap_tls: (TLS) Alert read:fatal:internal error" Module-Failure-Message = "eap_tls: (TLS) Failed reading from OpenSSL: error:14094438:SSL routines:ssl3_read_bytes:tlsv1 alert internal error" Module-Failur

Re: [PacketFence-users] change HTTPs cert; chain invalid

2023-03-16 Thread sgiops sgiops via PacketFence-users
Hello, i'm having a similar problem but we are trying to change the radius certificate. We generated the Packetfence certificate by the Microsoft domain certification authority in order to have the CA certificate already trusted on our domain workstations. We exported the CA certificate and the Pa