[PacketFence-users] Planning a packetfence deployement for a Factory Network with multiple mgm vlan's

2023-01-05 Thread jorge martínez via PacketFence-users
Hi Community, First of all, sorry for my english, it is not my first language. I'm planning to deploy a packetfence for the NAC system of the network that i'm developing for a factory. I have 2 building blocks planned, each building block has his own management VLAN for the Cisco Switches, addit

[PacketFence-users] Planning a packetfence deployement for a Factory Network with multiple mgm vlan's

2023-01-05 Thread Jorge Martínez Carvajal via PacketFence-users
Hi Community, First of all, sorry for my english, it is not my first language. I'm planning to deploy a packetfence for the NAC system of the network that i'm developing for a factory. I have 2 building blocks planned, each building block has his own management VLAN for the Cisco Switches, add

Re: [PacketFence-users] Planning a packetfence deployement for a Factory Network with multiple mgm vlan's

2023-01-05 Thread Zammit, Ludovic via PacketFence-users
Hello Jorge, Yes, you can. If PF management interface is not in the same layer 2 as the switch management interface, it does not matter. You can have it routed, as long the ports UDP 1812, 1813 and 3799 are accessible from the switch to PF you are ok. You can add another interface than the man

Re: [PacketFence-users] Planning a packetfence deployement for a Factory Network with multiple mgm vlan's

2023-01-05 Thread Enrique Gross via PacketFence-users
Hi Jorge As long routing is in place you can reach PF management interface, have a look here https://www.packetfence.org/doc/PacketFence_Installation_Guide.html#_routed_networks There is good info a considerations on routed networks Have a nice day, Enrique. El jue, 5 ene 2023 a las 13:36, j

Re: [PacketFence-users] Planning a packetfence deployement for a Factory Network with multiple mgm vlan's

2023-01-10 Thread jorge martínez via PacketFence-users
Hi All, FInaly the problem was sorted in the way that Ludovic told me, i have created a new sub-interface as "other" type, and i have enable radius Daemon on this sub-interface. I have setup in my Cisco envriroment this new IP direction of the sub-interface as Radius server and now i can logi