[prev in list] [next in list] [prev in thread] [next in thread] 

List:       packetfence-users
Subject:    [PacketFence-users] mac auth with ldap as source for mac addresses
From:       Sebastian Gille via PacketFence-users <packetfence-users () lists ! sourceforge ! net>
Date:       2021-12-15 13:23:28
Message-ID: D255A050-0249-4D47-9D11-2D477E744047 () email ! de
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]


Hi,
 
i have a question regarding mab and packetfence.
My idea is to check allowed mac-addresses against ldap instead of import the macs by \
csv to the database. Because our ldap is the only valid and complete source of \
information. My understanding is that i must configure an authentication source --> \
done Also an auth rule to map a role to the client. --> done
Second a connection profiles which utilizes this auth source. --> done
So far so good, but if i understood correctly, this should also configured in the \
files at mods and sites-enabled? This is what i understood after reading through the \
guide and noticed that the profile was triggered by a radius request but the auth \
source wasn't touched  
my questions:
 
Is this a valid configuration option on packetfence and how can i accomplish this \
task? Maybe someone did it before and can push me in the right direction.
 
Thx,
 
Sebastian


[Attachment #5 (text/html)]

<html><head><meta http-equiv="content-type" content="text/html; \
charset=utf-8"></head><body dir="auto"><div dir="ltr"><span style="font-family: \
Calibri, sans-serif; font-size: 11pt; -webkit-text-size-adjust: auto;">Hi,</span><p \
class="MsoNormal" style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: \
11pt; font-family: Calibri, sans-serif;"><o:p></o:p></p><p class="MsoNormal" \
style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: 11pt; font-family: \
Calibri, sans-serif;"><o:p>&nbsp;</o:p></p><p class="MsoNormal" \
style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: 11pt; font-family: \
Calibri, sans-serif;">i have a question regarding mab and \
packetfence.<o:p></o:p></p><p class="MsoNormal" style="-webkit-text-size-adjust: \
auto; margin: 0cm; font-size: 11pt; font-family: Calibri, sans-serif;">My idea is to \
check allowed mac-addresses against ldap instead of import the macs by csv to the \
database.<o:p></o:p></p><p class="MsoNormal" style="-webkit-text-size-adjust: auto; \
margin: 0cm; font-size: 11pt; font-family: Calibri, sans-serif;">Because our ldap is \
the only valid and complete source of information.<o:p></o:p></p><p class="MsoNormal" \
style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: 11pt; font-family: \
Calibri, sans-serif;">My understanding is that i must configure an authentication \
source --&gt; done<o:p></o:p></p><p class="MsoNormal" \
style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: 11pt; font-family: \
Calibri, sans-serif;">Also an auth rule to map a role to the client. --&gt; \
done<o:p></o:p></p><p class="MsoNormal" style="-webkit-text-size-adjust: auto; \
margin: 0cm; font-size: 11pt; font-family: Calibri, sans-serif;">Second a connection \
profiles which utilizes this auth source. --&gt; done<o:p></o:p></p><p \
class="MsoNormal" style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: \
11pt; font-family: Calibri, sans-serif;">So far so good, but if i understood \
correctly, this should also configured in the files at mods and \
sites-enabled?<o:p></o:p></p><p class="MsoNormal" style="-webkit-text-size-adjust: \
auto; margin: 0cm; font-size: 11pt; font-family: Calibri, sans-serif;">This is what i \
understood after reading through the guide and noticed that the profile was triggered \
by a radius request but the auth source wasn't touched<o:p></o:p></p><p \
class="MsoNormal" style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: \
11pt; font-family: Calibri, sans-serif;"><o:p>&nbsp;</o:p></p><p class="MsoNormal" \
style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: 11pt; font-family: \
Calibri, sans-serif;">my questions:<o:p></o:p></p><p class="MsoNormal" \
style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: 11pt; font-family: \
Calibri, sans-serif;"><o:p>&nbsp;</o:p></p><p class="MsoNormal" \
style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: 11pt; font-family: \
Calibri, sans-serif;">Is this a valid configuration option on packetfence and how can \
i accomplish this task?<o:p></o:p></p><p class="MsoNormal" \
style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: 11pt; font-family: \
Calibri, sans-serif;">Maybe someone did it before and can push me in the right \
direction.<o:p></o:p></p><p class="MsoNormal" style="-webkit-text-size-adjust: auto; \
margin: 0cm; font-size: 11pt; font-family: Calibri, \
sans-serif;"><o:p>&nbsp;</o:p></p><font face="Calibri, sans-serif" \
style="-webkit-text-size-adjust: auto;"><span style="font-size: \
14.666666984558105px;">Thx,</span></font><br style="-webkit-text-size-adjust: \
auto;"><p class="MsoNormal" style="-webkit-text-size-adjust: auto; margin: 0cm; \
font-size: 11pt; font-family: Calibri, sans-serif;"><o:p>&nbsp;</o:p></p><p \
class="MsoNormal" style="-webkit-text-size-adjust: auto; margin: 0cm; font-size: \
11pt; font-family: Calibri, sans-serif;">Sebastian</p></div></body></html>





_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic