[PacketFence-users] PF 10.2 - 802.1x for wired clients proxied to another radius server?

2020-11-10 Thread Peter Eriksson via PacketFence-users
Setup: Switches supporting ports with MAC-based authentication 802.1x (user+password) authentication There is a separate RADIUS (eduroam) server that handles with 802.1x user+password stuff so the PF servers just proxy the incoming 802.1x EAP requests to the other RADIUS server,

Re: [PacketFence-users] PF 10.2 - 802.1x for wired clients proxied to another radius server?

2020-11-11 Thread Ludovic Zammit via PacketFence-users
Hello Peter, Since PacketFence 6, the eduroam process changed a lot. Before, the eduroam radius authentication was sent to a specific virtual host on 1815. Now it’s not the case anymore, it’s handle on the 1812. Are you using the eduroam SSID to authenticate something like local AD users? Than

Re: [PacketFence-users] PF 10.2 - 802.1x for wired clients proxied to another radius server?

2020-11-12 Thread Peter Eriksson via PacketFence-users
Our setup: [Client]—[Switch]—(802.1x|MAC via RADIUS)—[PacketFence]—[eduroam-RADIUS-server]—[MySQL database with users & passwords] (“Switch” can also be [AccessPoint]—[WLC]) We do not use AD for authentication of our local eduroam/802.1x users and the network access passwords are different fr