[prev in list] [next in list] [prev in thread] [next in thread] 

List:       packetfence-users
Subject:    Re: [PacketFence-users] VLANs Problem
From:       Kai Bass (Westfalia Spielgeräte GmbH) via PacketFence
Date:       2024-04-16 7:00:59
Message-ID: VI1PR05MB5550C993E795D3696B529C96CE082 () VI1PR05MB5550 ! eurprd05 ! prod ! outlook ! com
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]

[Attachment #4 (text/plain)]

Hey Jiawei Ping,

thank you for your assistance.
Unfortunately, I do not believe that the issue lies with the Switch configuration in \
Packetfence, as the packetfence.log indicates that the correct VLAN has been \
assigned.

here an example:

Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac:] \
handling radius autz request: from switch_ip => (172.25.1.38), connection_type => \
Ethernet-NoEAP,switch_mac => (mac), mac => [mac], port => 20, username => "mac" \
                (pf::radius::authorize)
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac:] \
                Instantiate profile guest \
                (pf::Connection::ProfileFactory::_from_profile)
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac:] \
                is of status unreg; belongs into registration VLAN \
                (pf::role::getRegistrationRole)
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac: \
(172.25.1.38) Added VLAN 11 to the returned RADIUS Access-Accept \
                (pf::Switch::returnRadiusAccessAccept)
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac:] \
Updating locationlog from accounting request (pf::api::handle_accounting_metadata)


Vielen Dank und freundliche Grüße aus Hövelhof


Kai Bass | IT - Auszubildender

Telefon: +49 5257 98891-655 | Fax: -11
E-Mail: k.bass@westfalia-spielgeraete.de

[cid:d104368e-c9d8-4459-8e80-1eb9e650b757]

________________________________
Von: 平嘉伟 <jiawei_ping@leadstarmcd.com>
Gesendet: Dienstag, 16. April 2024 03:04
An: packetfence-users@lists.sourceforge.net <packetfence-users@lists.sourceforge.net>
Cc: Kai Bass (Westfalia Spielgeräte GmbH) <k.bass@westfalia-spielgeraete.de>
Betreff: 答复: VLANs Problem


Hi kai:

       Check this:

https://www.packetfence.org/doc/PacketFence_Installation_Guide.html#_adjust_switch_con \
figuration_in_packetfence<https://atpscan.global.hornetsecurity.com/index.php?atp_str= \
WSgwh1WymmFSv0gSqDuPtDwZlThcfDpgp6cbJFgkx5g71KgzyPGiZCrgJ4Romjn9D-3cOMXgCnZLjh3IfA3q2P \
bi-vcajMFBvurxtkhsie_wFaUl0zTMNEfCZ0PhwLH63l8gZ8NCdGWRZ_MulbD0wX_Ct4SLkxH_jIHbpAwToTKb \
INas2wufWvlRl9IaynsovBw4FI0NOLnIKxDR5ZyIDwluIYobPbnff1j5QbxkxlSQR-D7lA5qofG2h-_lZW8n2R \
mESCjcV28Fub3ehLHd5C6Z-n8pcpXqJY4JL9ELlu_66cx91AenTBKqjEE5E4_qyDAB9dfonj1tIWjDTxC0qIte \
846zaPbgA_EiVeX_AXkF49psX-PPPlNKK59IXbPeP91aowu_radcgMslrtq4QmLAzZj71gMcWj_BsuX_nqv15h \
9OSoXKSbnmHvLz8dBv3lZN-3FXPlHfpNYTzyM6OiOgCOL2BhU9SuLDV8AjOjojNealYNufBQsYfwGMmj1_mQ>



发件人: Kai Bass (Westfalia Spielgeräte GmbH) via PacketFence-users \
<packetfence-users@lists.sourceforge.net> 发送时间: 2024年4月15日 21:59
收件人: packetfence-users@lists.sourceforge.net
抄送: Kai Bass (Westfalia Spielgeräte GmbH) <k.bass@westfalia-spielgeraete.de>
主题: [PacketFence-users] VLANs Problem



Hello everyone,



I have successfully installed Packetfence with Active Directory authentication.

However, I am encountering some issues while trying to grant my test client access to \
a specific VLAN. My Clients dont get any IP Informations.

Currently, we are only using the default VLAN (1), which is assigned to all our IP \
addresses (172.25.0.0/24) and where my Access switch and Packetfence VM are located.



Can VLANs be configured using the IP range 192.168.0.0/24 in this setup? If yes, what \
are the considerations?

Is a secondary NIC required?  Do i need to configure the Switchport where the \
packetfence server is connected as Trunk and do i need to see my VM-MAC-Adress with \
"sh lldp info remote-device"? And do i need to configure my Access Port where my \
test-client is connected as Trunk with all VLANS too?

Do i need to configure something spezial in VMware Workstation Player other than my \
NICs as brided? How could i trobleshoot this problem?





Thank you very much for any help!



Regards,



Kai


[Attachment #5 (text/html)]

<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<style type="text/css" style="display:none;"> P {margin-top:0;margin-bottom:0;} \
</style> </head>
<body dir="ltr">
<div class="elementToProof" style="font-family: Aptos, Aptos_EmbeddedFont, \
Aptos_MSFontService, Calibri, Helvetica, sans-serif; font-size: 11pt; color: rgb(0, \
0, 0);"> Hey Jiawei Ping,&nbsp;</div>
<div class="elementToProof" style="font-family: Aptos, Aptos_EmbeddedFont, \
Aptos_MSFontService, Calibri, Helvetica, sans-serif; font-size: 11pt; color: rgb(0, \
0, 0);"> <br>
</div>
<div class="elementToProof" style="font-family: Aptos, Aptos_EmbeddedFont, \
Aptos_MSFontService, Calibri, Helvetica, sans-serif; font-size: 11pt; color: rgb(0, \
0, 0);"> thank you for your assistance.</div>
<div style="font-family: Aptos, Aptos_EmbeddedFont, Aptos_MSFontService, Calibri, \
Helvetica, sans-serif; font-size: 11pt; color: rgb(0, 0, 0);"> Unfortunately, I do \
not believe that the issue lies with the Switch configuration in Packetfence, as the \
packetfence.log indicates that the correct VLAN has been assigned.<br> <br>
here an example:</div>
<div class="elementToProof" style="font-family: Aptos, Aptos_EmbeddedFont, \
Aptos_MSFontService, Calibri, Helvetica, sans-serif; font-size: 11pt; color: rgb(0, \
0, 0);"> <br>
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac:] \
handling radius autz request: from switch_ip =&gt; (172.25.1.38), connection_type \
=&gt; Ethernet-NoEAP,switch_mac =&gt; (mac), mac =&gt; [mac], port =&gt; 20, username \
=&gt; &quot;mac&quot; (pf::radius::authorize)</div> <div style="font-family: Aptos, \
Aptos_EmbeddedFont, Aptos_MSFontService, Calibri, Helvetica, sans-serif; font-size: \
                11pt; color: rgb(0, 0, 0);">
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac:] \
Instantiate profile guest (pf::Connection::ProfileFactory::_from_profile)</div> <div \
class="elementToProof" style="font-family: Aptos, Aptos_EmbeddedFont, \
Aptos_MSFontService, Calibri, Helvetica, sans-serif; font-size: 11pt; color: rgb(0, \
                0, 0);">
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac:] \
is of status unreg; belongs into registration VLAN \
(pf::role::getRegistrationRole)</div> <div style="font-family: Aptos, \
Aptos_EmbeddedFont, Aptos_MSFontService, Calibri, Helvetica, sans-serif; font-size: \
                11pt; color: rgb(0, 0, 0);">
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: \
[mac:&nbsp;(172.25.1.38) Added VLAN 11 to the returned RADIUS Access-Accept \
(pf::Switch::returnRadiusAccessAccept)</div> <div class="elementToProof" \
style="font-family: Aptos, Aptos_EmbeddedFont, Aptos_MSFontService, Calibri, \
                Helvetica, sans-serif; font-size: 11pt; color: rgb(0, 0, 0);">
Mar 13 11:07:53 packetfence httpd.aaa-docker-wrapper[3265]: httpd.aaa(8) INFO: [mac:] \
Updating locationlog from accounting request \
(pf::api::handle_accounting_metadata)</div> <div class="elementToProof" \
style="font-family: Aptos, Aptos_EmbeddedFont, Aptos_MSFontService, Calibri, \
Helvetica, sans-serif; font-size: 11pt; color: rgb(0, 0, 0);"> <br>
</div>
<div style="color: inherit; background-color: inherit;" id="Signature">
<p style="margin-bottom: 12pt;"><span style="font-size: 12pt; color: rgb(70, 70, \
70);">Vielen Dank und freundliche Grüße aus Hövelhof<br> </span><br>
<span style="font-size: 7.5pt; color: rgb(70, 70, 70);"><br>
</span><span style="font-size: 12pt; color: rgb(70, 70, 70);">Kai Bass </span><span \
style="font-size: 12pt; color: rgb(160, 200, 15);">| </span><span style="font-size: \
12pt; color: rgb(70, 70, 70);">IT - Auszubildender<br> </span><span style="font-size: \
7.5pt; color: rgb(70, 70, 70);"><br> </span><span style="font-family: &quot;Calibri \
Light&quot;, sans-serif; font-size: 12pt; color: rgb(70, 70, 70);">Telefon: +49 5257 \
98891-655 </span><span style="font-family: &quot;Calibri Light&quot;, sans-serif; \
font-size: 12pt; color: rgb(160, 200, 15);">|</span><span style="font-family: \
&quot;Calibri Light&quot;, sans-serif; font-size: 12pt; color: rgb(70, 70, \
70);">&nbsp;Fax: -11</span><span style="font-size: 12pt; color: rgb(70, 70, \
70);"><br> </span><span style="font-family: &quot;Calibri Light&quot;, sans-serif; \
font-size: 12pt; color: rgb(70, 70, 70);">E-Mail: \
k.bass@westfalia-spielgeraete.de</span></p> <table style="width: 585pt; color: \
inherit; background-color: inherit;"> <tbody>
<tr>
<td style="width: 774px; height: 78.9844px; padding: 0cm; vertical-align: top;">
<p><span style="color: blue;"><img data-ogsc="" width="150" height="74" style="width: \
1.5625in; height: 0.7812in; min-width: auto; min-height: auto; margin-top: 0px; \
margin-bottom: 0px;" data-outlook-trace="F:1|T:1" \
src="cid:d104368e-c9d8-4459-8e80-1eb9e650b757"></span></p> </td>
<td style="height: 78.9844px; padding: 0cm; vertical-align: bottom;"></td>
</tr>
</tbody>
</table>
</div>
<div style="font-family: Aptos, Aptos_EmbeddedFont, Aptos_MSFontService, Calibri, \
Helvetica, sans-serif; font-size: 11pt; color: rgb(0, 0, 0);"> <br>
</div>
<hr style="display: inline-block; width: 98%;">
<div style="direction: ltr; font-family: Calibri, sans-serif; font-size: 11pt; color: \
rgb(0, 0, 0);"> <b>Von:</b>&nbsp;平嘉伟 &lt;jiawei_ping@leadstarmcd.com&gt;<br>
<b>Gesendet:</b>&nbsp;Dienstag, 16. April 2024 03:04<br>
<b>An:</b>&nbsp;packetfence-users@lists.sourceforge.net \
&lt;packetfence-users@lists.sourceforge.net&gt;<br> <b>Cc:</b>&nbsp;Kai Bass \
(Westfalia Spielgeräte GmbH) &lt;k.bass@westfalia-spielgeraete.de&gt;<br> \
<b>Betreff:</b>&nbsp;答复: VLANs Problem</div> <div style="direction: \
ltr;">&nbsp;</div> <p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, \
sans-serif; font-size: 11pt;"> <span style="font-family: &quot;Microsoft YaHei UI \
Light&quot;, sans-serif; font-size: 10.5pt;">Hi kai:</span></p> <p style="margin: 0cm \
0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: 11pt;"> <span \
style="font-family: &quot;Microsoft YaHei UI Light&quot;, sans-serif; font-size: \
10.5pt;">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Check this:</span></p> <p \
style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: 11pt;"> \
<span style="font-family: &quot;Microsoft YaHei UI Light&quot;, sans-serif; \
font-size: 10.5pt; color: rgb(5, 99, 193);"><u><a \
href="https://atpscan.global.hornetsecurity.com/index.php?atp_str=WSgwh1WymmFSv0gSqDuP \
tDwZlThcfDpgp6cbJFgkx5g71KgzyPGiZCrgJ4Romjn9D-3cOMXgCnZLjh3IfA3q2Pbi-vcajMFBvurxtkhsie \
_wFaUl0zTMNEfCZ0PhwLH63l8gZ8NCdGWRZ_MulbD0wX_Ct4SLkxH_jIHbpAwToTKbINas2wufWvlRl9Iaynso \
vBw4FI0NOLnIKxDR5ZyIDwluIYobPbnff1j5QbxkxlSQR-D7lA5qofG2h-_lZW8n2RmESCjcV28Fub3ehLHd5C \
6Z-n8pcpXqJY4JL9ELlu_66cx91AenTBKqjEE5E4_qyDAB9dfonj1tIWjDTxC0qIte846zaPbgA_EiVeX_AXkF \
49psX-PPPlNKK59IXbPeP91aowu_radcgMslrtq4QmLAzZj71gMcWj_BsuX_nqv15h9OSoXKSbnmHvLz8dBv3lZN-3FXPlHfpNYTzyM6OiOgCOL2BhU9SuLDV8AjOjojNealYNufBQsYfwGMmj1_mQ" \
id="OWA76e2061a-99cb-6e09-00c0-b1886fe2ca2b" class="OWAAutoLink" \
title="https://www.packetfence.org/doc/PacketFence_Installation_Guide.html%23_adjust_switch_configuration_in_packetfence" \
data-auth="NotApplicable" data-loopstyle="linkonly" style="color: rgb(5, 99, 193); \
margin-top: 0px; margin-bottom: \
0px;">https://www.packetfence.org/doc/PacketFence_Installation_Guide.html#_adjust_switch_configuration_in_packetfence</a></u></span></p>
 <p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: \
11pt;"> <span style="font-family: &quot;Microsoft YaHei UI Light&quot;, sans-serif; \
font-size: 10.5pt;">&nbsp;</span></p> <div style="padding: 3pt 0cm 0cm; border-top: \
1pt solid rgb(225, 225, 225);"> <p style="margin: 0cm 0cm 0.0001pt; font-family: \
Calibri, sans-serif; font-size: 11pt;"> <span style="font-family: \
DengXian;"><b>发件人:</b>&nbsp;Kai Bass (Westfalia Spielgeräte GmbH) via \
PacketFence-users &lt;packetfence-users@lists.sourceforge.net&gt;<br> \
<b>发送时间:</b>&nbsp;2024年4月15日&nbsp;21:59<br> \
<b>收件人:</b>&nbsp;packetfence-users@lists.sourceforge.net<br> \
<b>抄送:</b>&nbsp;Kai Bass (Westfalia Spielgeräte GmbH) \
&lt;k.bass@westfalia-spielgeraete.de&gt;<br> <b>主题:</b>&nbsp;[PacketFence-users] \
VLANs Problem</span></p> </div>
<p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: \
11pt;"> &nbsp;</p>
<p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: \
11pt;"> <span style="color: black;">Hello everyone,</span></p>
<p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: \
11pt;"> <span style="color: black;">&nbsp;</span></p>
<p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: \
11pt;"> <span style="color: black;">I have successfully installed Packetfence with \
Active Directory authentication.</span></p> <p style="margin: 0cm 0cm 0.0001pt; \
font-family: Calibri, sans-serif; font-size: 11pt;"> <span style="color: \
black;">However, I am encountering some issues while trying to grant my test client \
access to a specific VLAN. My Clients dont get any IP Informations.</span></p> <p \
style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: 11pt;"> \
<span style="color: black;">Currently, we are only using the default VLAN (1), which \
is assigned to all our IP addresses (172.25.0.0/24) and where my Access switch and \
Packetfence VM are located.</span></p> <p style="margin: 0cm 0cm 0.0001pt; \
font-family: Calibri, sans-serif; font-size: 11pt;"> <span style="color: \
black;">&nbsp;</span></p> <p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, \
sans-serif; font-size: 11pt;"> <span style="color: black;">Can VLANs be configured \
using the IP range 192.168.0.0/24 in this setup? If yes, what are the \
considerations?</span></p> <p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, \
sans-serif; font-size: 11pt;"> <span style="color: black;">Is a secondary NIC \
required?&nbsp; Do i need to configure the Switchport where the packetfence server is \
connected as Trunk and do i need to see my VM-MAC-Adress with &quot;sh lldp info \
remote-device&quot;? And do i need to configure my Access  Port where my test-client \
is connected as Trunk with all VLANS too?</span></p> <p style="margin: 0cm 0cm \
0.0001pt; font-family: Calibri, sans-serif; font-size: 11pt;"> <span style="color: \
black;">Do i need to configure something spezial in VMware Workstation Player other \
than my NICs as brided? How could i trobleshoot this problem?</span></p> <p \
style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: 11pt;"> \
<span style="color: black;">&nbsp;</span></p> <p style="margin: 0cm 0cm 0.0001pt; \
font-family: Calibri, sans-serif; font-size: 11pt;"> <span style="color: \
black;">&nbsp;</span></p> <p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, \
sans-serif; font-size: 11pt;"> <span style="color: black;">Thank you very much for \
any help!</span></p> <p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, \
sans-serif; font-size: 11pt;"> <span style="color: black;">&nbsp;</span></p>
<p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: \
11pt;"> <span style="color: black;">Regards,</span></p>
<p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: \
11pt;"> <span style="color: black;">&nbsp;</span></p>
<p style="margin: 0cm 0cm 0.0001pt; font-family: Calibri, sans-serif; font-size: \
11pt;"> <span style="color: black;">Kai</span></p>
</body>
</html>


["Outlook-bc5qjtpx.png" (image/png)]
[Attachment #7 (--===============4770764951883827862==)]


_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic