Re: [PacketFence-users] error during sendmail

2022-02-25 Thread Enrico Becchetti via PacketFence-users
it's seems to be missing "use utf8;" in Lite.pm module and be carefull to special character ' and so on. Bye Enrico Il 21/02/2022 15:47, Enrico Becchetti via PacketFence-users ha scritto: Dear friends, I'm usgin ad old version of Packetfence , PF 8.3.0 and now I need to send a

[PacketFence-users] error during sendmail

2022-02-21 Thread Enrico Becchetti via PacketFence-users
Dear friends, I'm usgin ad old version of Packetfence , PF 8.3.0 and now I need to send a text when a violation is generated. For this reason I add a message in the configuration of one of the triggers but after restart pfqueue and pfdetect I've got this problem: Feb 21 10:49:58 pfsrv

Re: [PacketFence-users] vulnerability check with OID

2021-03-12 Thread Enrico Becchetti via PacketFence-users
-03-07 à 02 h 21, Enrico Becchetti via PacketFence-users a écrit : Dear all, I have an installation of PF version 8.3 with various backends, three network profiles, an intrusion detector and a server to check the compliance of the hosts connecting to the network. It is an installation made

[PacketFence-users] vulnerability check with OID

2021-03-08 Thread Enrico Becchetti via PacketFence-users
Dear all, I have an installation of PF version 8.3 with various backends, three network profiles, an intrusion detector and a server to check the compliance of the hosts connecting to the network. It is an installation made about 3 years ago which is working without any problems. Now I

[PacketFence-users] Device Class .... "operating system"

2021-02-22 Thread Enrico Becchetti via PacketFence-users
  Dear All, sometimes Device Class has got this value "Operating System". it would be very useful for me to be able to change this value. Can you tell me if it is possible through the dashboard or directly through the database ? Thanks Best Regards Enrico --

[PacketFence-users] Cisco Catalyst 9800 Wireless Controller

2020-07-20 Thread Enrico Becchetti via PacketFence-users
 Dear all, as you know Cisco has introduced a new products to managing wifi network. For example: https://www.cisco.com/c/en/us/products/collateral/wireless/catalyst-9800-series-wireless-controllers/datasheet-c78-742434.html Does Packetfence work with these controllers ?  Thanks Best Regards

Re: [PacketFence-users] unregistered device status after login

2020-03-18 Thread Enrico Becchetti via PacketFence-users
hentication USERNAME “” RADIUS-AAI Thanks, Ludovic Zammit lzam...@inverse.ca <mailto:lzam...@inverse.ca> :: +1.514.447.4918 (x145) ::www.inverse.ca Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence (http://packetfence.org) On May 30, 2019, at 8:45 AM, En

Re: [PacketFence-users] Assign the default VLAN based on a mac address

2020-02-14 Thread Enrico Becchetti via PacketFence-users
  Dear all, packetfence is very configurable and can allow use various authentication backends. What do you think is the best one to record the mac address and its vlan ? Best regards Enrico Il 06/02/2020 23:16, G PL via PacketFence-users ha scritto: Hello, all depend of your switch feature.

[PacketFence-users] Fwd: Re: [fingerbank-signatures] Fingerbank failure identify Macosx Catalina...

2020-01-02 Thread Enrico Becchetti via PacketFence-users
Dear all, I also forward this mail to packetfence list because I believe it can also be useful to others. Best Regards Enrico Messaggio Inoltrato Oggetto: Re: [fingerbank-signatures] Fingerbank failure identify Macosx Catalina... Data: Mon, 23 Dec 2019 17:44:21 +0100

Re: [PacketFence-users] Fingerbank doesn't work properly

2019-12-06 Thread Enrico Becchetti via PacketFence-users
  Dear all, Can anybody tell me if the device detection works without Internet (wan) connection ? Database /usr/local/fingerbank/db/fingerbank_Local.db Database /usr/local/fingerbank/db/fingerbank_Upstream.db Are these files useful for identifying the devices that enter the network when the

Re: [PacketFence-users] Raspberry Pi and Packetfence

2019-11-14 Thread Enrico Becchetti via PacketFence-users
  Dear Monica, Do you know https://www.zeroshell.org ? It runs on Raspberry PI. Packetfence is more than an easy software for managing users that only need network access throught captive portal. Best Regards Enrico Il 13/11/2019 19:15, Monica Gordillo via PacketFence-users ha scritto: This

Re: [PacketFence-users] packetfence integration with openvas

2019-09-11 Thread Enrico Becchetti via PacketFence-users
 Dear Gulia, I'm not an expert but in the past I've got a similiar issue so be carefull about openvas/greenbone security assistant and the other modules because they can comunicate using network or unix socket. If you need to run openvas integration will enable network, so please check

Re: [PacketFence-users] unregistered device status after login

2019-05-30 Thread Enrico Becchetti via PacketFence-users
Il 30/05/2019 14:08, Nicolas Quiniou-Briand via PacketFence-users ha scritto: Hello Enrico, On 2019-05-30 1:37 p.m., Enrico Becchetti via PacketFence-users wrote: but why is it not online ? See https://packetfence.org/doc/PacketFence_Installation_Guide.html#_radius_accounting Dear all

Re: [PacketFence-users] unregistered device status after login

2019-05-30 Thread Enrico Becchetti via PacketFence-users
Il 29/05/2019 18:54, Enrico via PacketFence-users ha scritto:   Dear all, after doing several tests my PF went into production state. I have got a profile for a wifi network with radius backend and I use a Virtual Wireless Lan Controller managed through Cisco mobility express. Access points

Re: [PacketFence-users] How to avoid Anonymous identity.... 802.1x/radius issue

2019-05-10 Thread Enrico Becchetti via PacketFence-users
e the radius request directly on PacketFence. Regards Fabrice Le 19-05-08 à 05 h 19, Enrico Becchetti via PacketFence-users a écrit : Il 07/05/2019 13:36, Nicolas Quiniou-Briand via PacketFence-users ha scritto: Hello Enrico, Could you provide me a full example ? 1. a MAC address which has iss

Re: [PacketFence-users] How to avoid Anonymous identity.... 802.1x/radius issue

2019-05-08 Thread Enrico Becchetti via PacketFence-users
Il 07/05/2019 13:36, Nicolas Quiniou-Briand via PacketFence-users ha scritto: Hello Enrico, Could you provide me a full example ? 1. a MAC address which has issue 2. Actual results 3. Expected results 4. packetfence.log for this MAC address 1) 70:54:d2:bc:be:91 2) login with 802.1X from

Re: [PacketFence-users] How to avoid Anonymous identity.... 802.1x/radius issue

2019-05-06 Thread Enrico Becchetti via PacketFence-users
Il 29/04/2019 14:16, Nicolas Quiniou-Briand via PacketFence-users ha scritto: Hello, On 2019-04-28 9:53 p.m., Enrico via PacketFence-users wrote:   Dear all, I’ve been writing lots of emails to this list, but I think this one is a very important one, because I’d like to find better

Re: [PacketFence-users] fingerbank

2019-04-24 Thread Enrico Becchetti via PacketFence-users
Il 23/04/2019 13:51, Nicolas Quiniou-Briand via PacketFence-users ha scritto: Hello Enrico, On 2019-04-19 8:41 a.m., Enrico Becchetti via PacketFence-users wrote: If I need how can I add devices to fingerbank ? You can go here (you need a GitHub login): https://api.fingerbank.org

Re: [PacketFence-users] fingerbank

2019-04-19 Thread Enrico Becchetti via PacketFence-users
Il 19/04/2019 08:41, Enrico Becchetti via PacketFence-users ha scritto: Dear all, After some weeks my PF 8.3.0 is working fine. I've got some profile authentication source and so on. I also have openvas integration but I realized that it hasn't been working for a month. All the devices

[PacketFence-users] fingerbank

2019-04-19 Thread Enrico Becchetti via PacketFence-users
Dear all, After some weeks my PF 8.3.0 is working fine. I've got some profile authentication source and so on. I also have openvas integration but I realized that it hasn't been working for a month. All the devices that connect are not identified and therefore the scan does not start.

Re: [PacketFence-users] suricata "ET TOR" violation doesn't start

2019-04-05 Thread Enrico Becchetti via PacketFence-users
Hi all, Maybe the problem is here: Apr  2 16:33:39 idssrv suricata[31336] [1:2522354:3636] ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 178 [Classification: Misc Attack] [Priority: 2] {TCP} *163.172.53.84:21 -> 10.25.1.1:52571** * packetfence receive this information from

Re: [PacketFence-users] Device registration portal

2019-03-19 Thread Enrico Becchetti via PacketFence-users
Il 19/03/2019 13:56, Nicolas Quiniou-Briand via PacketFence-users ha scritto: Hello Enrico, On 2019-03-13 10:17 a.m., Enrico via PacketFence-users wrote: but what do you think about ip address ? Can ip address be displayed  ? In your situation, for what do you need this information ?  

Re: [PacketFence-users] Odd Fingerbank profile

2019-03-08 Thread Enrico Becchetti via PacketFence-users
Hi all, I'd like to add my two missing scan: Mar  8 15:42:57 pfsrv packetfence_httpd.aaa: httpd.aaa(31350) WARN: [mac:00:16:cb:86:4f:d1] Can't find scan engine for 00:16:cb:86:4f:d1 since we don't have it's OS (pf::Connection::Profile::findScan) (Macbook 2009 with Snow Leopard) Mar  8

Re: [PacketFence-users] Compliance. Frequency of scans

2019-02-28 Thread Enrico Becchetti via PacketFence-users
e is 1 week then the scan will be trigger each week. Or you can add the violation by script: pfcmd violation add 00:11:22:33:44:55 117 Regards Fabrice Le 19-02-25 à 09 h 16, Enrico Becchetti via PacketFence-users a écrit :   Dear All, I make some tests using openvas and now I would lik

Re: [PacketFence-users] Compliance. Frequency of scans

2019-02-27 Thread Enrico Becchetti via PacketFence-users
lease time is 1 week then the scan will be trigger each week. Or you can add the violation by script: pfcmd violation add 00:11:22:33:44:55 117 Regards Fabrice Le 19-02-25 à 09 h 16, Enrico Becchetti via PacketFence-users a écrit :   Dear All, I make some tests using openvas and now I wou

[PacketFence-users] Compliance. Frequency of scans

2019-02-25 Thread Enrico Becchetti via PacketFence-users
  Dear All, I make some tests using openvas and now I would like to ask if it is possible to configure the frequency with which to check the endpoints. From web gui I can choose only when make scan: pre registration, during or after registration. Do I choose how often make this scan on the

Re: [PacketFence-users] openvas scan sucessful but don't put the computer in isolation vlan

2019-01-28 Thread Enrico Becchetti via PacketFence-users
  Dear William, could you give more details ? I've also tried openvas without any result. After device is connected to the network ("automatically network registration") scan didn't start. My server is Linux Centos 7.6.1810, with yum update, and PF 8.3.0. Profile: [PF-DOT1X] locale=

[PacketFence-users] PF 8.3.0 and OpenVAS-9.0.0. Scan doesn't start

2019-01-24 Thread Enrico Becchetti via PacketFence-users
  Hi all, my apologize for this new request but 8.3.0 seems to have a problem with OpenVAS engine. My Linux Centos 7 is latest release and PF 8.3.0 with pf-maint.pl. This virtual machine running with one NIC and some vlan. OpenVAS 9.0.0, and greenboone 7.0.22, are installed from Atomic

Re: [PacketFence-users] 8.3 Inline vs Enforcement ... 802.1x

2019-01-22 Thread Enrico Becchetti via PacketFence-users
Thanks Fabrice it works. Now I'd like to add OpenVAS scan engine since from 8.3 works again. Best Regards Enrico Il 21/01/2019 00:37, Durand fabrice via PacketFence-users ha scritto: Hello Enrico, you just have to set the registration vlan (in the switch config, pf side) as the vlan id of

Re: [PacketFence-users] 802.1X TTLS PAP ... does it works ?

2018-12-21 Thread Enrico Becchetti via PacketFence-users
PacketFence-users ha scritto: Hello Enrico, you need to add manually the ldap server in the freeradius configuration. (https://packetfence.org/doc/PacketFence_Installation_Guide.html#_eap_authentication_against_openldap) Regards Fabrice Le 18-12-20 à 10 h 15, Enrico Becchetti via PacketFence-us

[PacketFence-users] 802.1X TTLS PAP ... does it works ?

2018-12-20 Thread Enrico Becchetti via PacketFence-users
  Hi all, I again ask in this mailing list to finish the setup of my PacketFence server. I'm running Centos 7.6 x86 with packetfence-8.2.1-3.el7.noarch  and , as you can read from the subject of this email, I need to activate 802.1X authentication using TTLS and PAP. I've one production vlan

[PacketFence-users] node and hostname question

2018-12-16 Thread Enrico Becchetti via PacketFence-users
Dear All, when a device connects to one network manage by PF it obtain an ip address. I'd to know if PF assigns hostname and what kind of rules is used. for example ip + roule named and so on. Thanks a lot Bye Enrico -- ___

Re: [PacketFence-users] Captive Portal authorization failed "you do not have permission to register a device with this username"....

2018-12-12 Thread Enrico Becchetti via PacketFence-users
) Is there any BUG or is my mistake ? Thanks a lot ! Bye Enrico Il 12/12/2018 08:36, Enrico Becchetti via PacketFence-users ha scritto: Il 12/12/2018 08:17, Nicolas Quiniou-Briand ha scritto: Hello, On 2018-12-12 7:46 a.m., Enrico Becchetti wrote: Hello ! "Configuration->

Re: [PacketFence-users] Captive Portal authorization failed "you do not have permission to register a device with this username"....

2018-12-11 Thread Enrico Becchetti via PacketFence-users
Il 12/12/2018 08:17, Nicolas Quiniou-Briand ha scritto: Hello, On 2018-12-12 7:46 a.m., Enrico Becchetti wrote: Hello ! "Configuration->Policies and Access Control-> Roles" I've added "PF-WEB", "Max Nodes per user" equal to 0 and default Traffic Shaping. You just create the role. To

Re: [PacketFence-users] Captive Portal authorization failed "you do not have permission to register a device with this username"....

2018-12-11 Thread Enrico Becchetti via PacketFence-users
Il 11/12/2018 15:31, Nicolas Quiniou-Briand via PacketFence-users ha scritto: Hello Enrico, Where did you assign the PF-WEB role ? Hello ! "Configuration->Policies and Access Control-> Roles" I've added "PF-WEB", "Max Nodes per user" equal to 0 and default Traffic Shaping. Thanks Enrico --

[PacketFence-users] Captive Portal authorization failed "you do not have permission to register a device with this username"....

2018-12-11 Thread Enrico Becchetti via PacketFence-users
Dear Fabrice and all ! I need a new help to solve this easy question. My Linux Centos 7.1810 with PF 8.2.1 has the right SAML link to IDP but when device tries to connect this message is shown "you do not have permission to register a device with this username" so the authentication phase

Re: [PacketFence-users] Fwd: Re: SAML error.. please help

2018-11-28 Thread Enrico Becchetti via PacketFence-users
restart And try again. Thanks, Ludovic Zammit lzam...@inverse.ca <mailto:lzam...@inverse.ca> :: +1.514.447.4918 (x145) ::www.inverse.ca Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence (http://packetfence.org) On Nov 27, 2018, at 9:54 AM, Enrico Becchet

Re: [PacketFence-users] Fwd: Re: SAML error.. please help

2018-11-28 Thread Enrico Becchetti via PacketFence-users
ervices: /usr/local/pf/bin/pfcmd service pf restart And try again. Thanks, Ludovic Zammit lzam...@inverse.ca <mailto:lzam...@inverse.ca> :: +1.514.447.4918 (x145) ::www.inverse.ca Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence (http://packetfence.org) On Nov 27,