You can subscribe to this list here.
2007 |
Jan
|
Feb
|
Mar
|
Apr
|
May
(3) |
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
---|---|---|---|---|---|---|---|---|---|---|---|---|
2008 |
Jan
|
Feb
|
Mar
|
Apr
(1) |
May
(17) |
Jun
(23) |
Jul
(40) |
Aug
(48) |
Sep
(32) |
Oct
(38) |
Nov
(36) |
Dec
(78) |
2009 |
Jan
(31) |
Feb
(76) |
Mar
(44) |
Apr
(92) |
May
(84) |
Jun
(71) |
Jul
(50) |
Aug
(68) |
Sep
(42) |
Oct
(40) |
Nov
(28) |
Dec
(53) |
2010 |
Jan
(52) |
Feb
(81) |
Mar
(60) |
Apr
(57) |
May
(50) |
Jun
(42) |
Jul
(85) |
Aug
(51) |
Sep
(61) |
Oct
(59) |
Nov
(51) |
Dec
(36) |
2011 |
Jan
(121) |
Feb
(172) |
Mar
(133) |
Apr
(116) |
May
(116) |
Jun
(78) |
Jul
(98) |
Aug
(148) |
Sep
(90) |
Oct
(151) |
Nov
(100) |
Dec
(161) |
2012 |
Jan
(159) |
Feb
(135) |
Mar
(204) |
Apr
(149) |
May
(156) |
Jun
(118) |
Jul
(154) |
Aug
(146) |
Sep
(226) |
Oct
(186) |
Nov
(77) |
Dec
(92) |
2013 |
Jan
(109) |
Feb
(117) |
Mar
(115) |
Apr
(148) |
May
(216) |
Jun
(271) |
Jul
(382) |
Aug
(323) |
Sep
(157) |
Oct
(120) |
Nov
(110) |
Dec
(113) |
2014 |
Jan
(192) |
Feb
(120) |
Mar
(185) |
Apr
(117) |
May
(150) |
Jun
(205) |
Jul
(169) |
Aug
(239) |
Sep
(197) |
Oct
(117) |
Nov
(148) |
Dec
(121) |
2015 |
Jan
(170) |
Feb
(290) |
Mar
(252) |
Apr
(349) |
May
(417) |
Jun
(351) |
Jul
(234) |
Aug
(188) |
Sep
(126) |
Oct
(333) |
Nov
(153) |
Dec
(115) |
2016 |
Jan
(212) |
Feb
(272) |
Mar
(181) |
Apr
(221) |
May
(222) |
Jun
(275) |
Jul
(160) |
Aug
(151) |
Sep
(165) |
Oct
(137) |
Nov
(111) |
Dec
(83) |
2017 |
Jan
(191) |
Feb
(140) |
Mar
(145) |
Apr
(109) |
May
(218) |
Jun
(112) |
Jul
(219) |
Aug
(191) |
Sep
(105) |
Oct
(217) |
Nov
(196) |
Dec
(158) |
2018 |
Jan
(303) |
Feb
(138) |
Mar
(93) |
Apr
(64) |
May
(239) |
Jun
(204) |
Jul
(181) |
Aug
(191) |
Sep
(91) |
Oct
(119) |
Nov
(158) |
Dec
(162) |
2019 |
Jan
(168) |
Feb
(218) |
Mar
(126) |
Apr
(178) |
May
(154) |
Jun
(147) |
Jul
(279) |
Aug
(179) |
Sep
(126) |
Oct
(118) |
Nov
(73) |
Dec
(70) |
2020 |
Jan
(135) |
Feb
(157) |
Mar
(187) |
Apr
(100) |
May
(112) |
Jun
(111) |
Jul
(117) |
Aug
(87) |
Sep
(92) |
Oct
(237) |
Nov
(134) |
Dec
(147) |
2021 |
Jan
(58) |
Feb
(79) |
Mar
(191) |
Apr
(193) |
May
(95) |
Jun
(155) |
Jul
(146) |
Aug
(86) |
Sep
(106) |
Oct
(69) |
Nov
(102) |
Dec
(71) |
2022 |
Jan
(70) |
Feb
(198) |
Mar
(89) |
Apr
(88) |
May
(65) |
Jun
(57) |
Jul
(92) |
Aug
(41) |
Sep
(81) |
Oct
(112) |
Nov
(56) |
Dec
(106) |
2023 |
Jan
(98) |
Feb
(14) |
Mar
(130) |
Apr
(62) |
May
(40) |
Jun
(36) |
Jul
(32) |
Aug
(34) |
Sep
(18) |
Oct
(48) |
Nov
(44) |
Dec
(20) |
2024 |
Jan
(36) |
Feb
(75) |
Mar
(70) |
Apr
(67) |
May
(57) |
Jun
(55) |
Jul
(48) |
Aug
(44) |
Sep
(63) |
Oct
|
Nov
|
Dec
|
From: Zammit, L. <lu...@ak...> - 2024-09-26 17:58:56
|
Hello Lucas, The only option would be to install the new PacketFence ZEN 14 OVA or ISO. Thanks, Ludovic Zammit Product Support Engineer Principal Lead Cell: +1.613.670.8432 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: <https://community.akamai.com/> <http://blogs.akamai.com/> <https://twitter.com/akamai> <http://www.facebook.com/AkamaiTechnologies> <http://www.linkedin.com/company/akamai-technologies> <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > On Sep 26, 2024, at 4:09 AM, Lucas Beier via PacketFence-users <pac...@li...> wrote: > > This Message Is From an External Sender > This message came from outside your organization. > Hi, > > we are using Packetfence with our local apt mirror clone. Since we updated to 13.2, we are not able to install packerfence anymore, because of the container pull from ghcr.io <http://ghcr.io/> > > Is there a way, to still install packetfence from local sources ? > > Best Regards > Lucas > _______________________________________________ > PacketFence-users mailing list > Pac...@li... <mailto:Pac...@li...> > https://urldefense.com/v3/__https://lists.sourceforge.net/lists/listinfo/packetfence-users__;!!GjvTz_vk!TJqFCMhYCTDyHVpH-vtoGbI71oKxlMxY5wf6nCDdwfbPiZERTtp__MEDNunSqmqYG_o28kmRecakS19-sr30ddQTnvqrcvtYQJvztQ$ |
From: Satkunas, D. <dsa...@ak...> - 2024-09-26 15:38:39
|
Arun, The preview uses a different URL path, and if the background image is using a relative path it will fail to load. Try using a full path including the FQDN to the image-src. Darren Satkunas Software Engineer Senior Lead [signature_3371045375] Office: +1.617.444.1234 Cell: +1.617.444.1234 Akamai Technologies 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_2126220668]<https://community.akamai.com/> [signature_2699496788] <http://blogs.akamai.com/> [signature_3488773085] <https://twitter.com/akamai> [signature_1889522509] <http://www.facebook.com/AkamaiTechnologies> [signature_3856813662] <http://www.linkedin.com/company/akamai-technologies> [signature_2667012721] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> From: Arun Kangle <ak...@gm...> Date: Thursday, September 26, 2024 at 1:14 AM To: "Satkunas, Darren" <dsa...@ak...> Cc: "pac...@li..." <pac...@li...> Subject: Re: [PacketFence-users] Adding logo and background image to the portal Thank you so much Darren. This works perfectly when i see preview of the layout. html but when i see preview of the portal (by clicking "preview" button at the top) i still see the original layout without my background image. Is there ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Thank you so much Darren. This works perfectly when i see preview of the layout.html but when i see preview of the portal (by clicking "preview" button at the top) i still see the original layout without my background image. Is there any other file i should edit? On Wed, Sep 18, 2024 at 7:53 PM Satkunas, Darren <dsa...@ak...<mailto:dsa...@ak...>> wrote: In the connection profile edit layout.html with the following 2 changes: Line 14, replace <body> with - adjust the path in url() to the image you want to use <body style="background-color: transparent; background-image: url(/portal_preview/profile-templates/default/logo.png); background-repeat: repeat; background-attachment: fixed; background-position: center;"> Line 21, replace <header> with <header style="background-color: transparent;"> Darren Satkunas Software Engineer Senior Lead [signature_91702086] Office: +1.617.444.1234 Cell: +1.617.444.1234 Akamai Technologies 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_117365058]<https://community.akamai.com/> [signature_1004417448] <http://blogs.akamai.com/> [signature_3192415103] <https://urldefense.com/v3/__https:/twitter.com/akamai__;!!GjvTz_vk!RQbqDTVAFdskjYmySc7k2N4tn6dwYBrcy9z0sA2-ySBmDOlu_MQFWPDlK07CCPl1_YTp08Zy6aNzPg$> [signature_2883625797] <https://urldefense.com/v3/__http:/www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!RQbqDTVAFdskjYmySc7k2N4tn6dwYBrcy9z0sA2-ySBmDOlu_MQFWPDlK07CCPl1_YTp08aBvy_CSQ$> [signature_3378242615] <https://urldefense.com/v3/__http:/www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!RQbqDTVAFdskjYmySc7k2N4tn6dwYBrcy9z0sA2-ySBmDOlu_MQFWPDlK07CCPl1_YTp08bcwG-chQ$> [signature_274248214] <https://urldefense.com/v3/__http:/www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!RQbqDTVAFdskjYmySc7k2N4tn6dwYBrcy9z0sA2-ySBmDOlu_MQFWPDlK07CCPl1_YTp08bxJKc2hw$> From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Reply-To: "pac...@li...<mailto:pac...@li...>" <pac...@li...<mailto:pac...@li...>> Date: Friday, September 13, 2024 at 12:10 PM To: "pac...@li...<mailto:pac...@li...>" <pac...@li...<mailto:pac...@li...>> Cc: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Subject: [PacketFence-users] Adding logo and background image to the portal Hello All, Could anyone please point me to a quick way to add the background image and a logo to the captive portal? Many thanks in advance, - Arun ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hello All, Could anyone please point me to a quick way to add the background image and a logo to the captive portal? Many thanks in advance, - Arun |
From: Rens v. T. | P. <Ren...@pr...> - 2024-09-26 10:31:53
|
Hello, I'm trying to upgrade a Packetfence ZEN 13.2 cluster to 14.0. Detaching the node worked fine. I've updated the Debian and Packetfence sources.list and packetfence.list files to bookworm and Packetfence 14.0. After that /usr/local/pf/addons/upgrade/do-upgrade.sh (OS upgrades enabled) fails with a fingerbank error. Setting up fingerbank-collector (1.5.0-1) ... fingerbank user already exist chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' chown: warning: '.' should be ':': 'fingerbank.fingerbank' Setting up fingerbank (4.3.2+20240521203931+0+0012+feature~debian12+bookworm1) ... Encode.c: loadable library and perl binaries are mismatched (got handshake key 0xeb80080, needed 0xed00080) chown: warning: '.' should be ':': 'fingerbank.fingerbank' Can't load '/usr/local/pf/lib_perl/lib/perl5/x86_64-linux-gnu-thread-multi/auto/Params/Util/Util.so' for module Params::Util: /usr/local/pf/lib_perl/lib/perl5/x86_64-linux-gnu-thread-multi/auto/Params/Util/Util.so: undefined symbol: PL_current_context at /usr/lib/x86_64-linux-gnu/perl-base/XSLoader.pm line 93. at /usr/local/pf/lib_perl/lib/perl5/x86_64-linux-gnu-thread-multi/Params/Util.pm line 68. Compilation failed in require at /usr/local/pf/lib_perl/lib/perl5/Data/OptList.pm line 7. BEGIN failed--compilation aborted at /usr/local/pf/lib_perl/lib/perl5/Data/OptList.pm line 7. Compilation failed in require at /usr/local/pf/lib_perl/lib/perl5/Class/Load.pm line 10. BEGIN failed--compilation aborted at /usr/local/pf/lib_perl/lib/perl5/Class/Load.pm line 10. Compilation failed in require at /usr/local/pf/lib_perl/lib/perl5/x86_64-linux-gnu-thread-multi/Moose.pm line 12. BEGIN failed--compilation aborted at /usr/local/pf/lib_perl/lib/perl5/x86_64-linux-gnu-thread-multi/Moose.pm line 12. Compilation failed in require at /usr/local/fingerbank/lib/fingerbank/DB.pm line 13. BEGIN failed--compilation aborted at /usr/local/fingerbank/lib/fingerbank/DB.pm line 13. Compilation failed in require. BEGIN failed--compilation aborted. make: *** [Makefile:137: fixpermissions] Error 2 dpkg: error processing package fingerbank (--configure): installed fingerbank package post-installation script subprocess returned error exit status 2 Is this the way the way to upgrade a ZEN cluster incl OS upgrades? Or is it better to create a new cluster and migrate? Thanks a lot for your help. Regards, Rens |
From: Lucas B. <lu...@fu...> - 2024-09-26 08:28:36
|
<div dir='auto'>Hi,<div dir="auto"><br></div><div dir="auto">we are using Packetfence with our local apt mirror clone. Since we updated to 13.2, we are not able to install packerfence anymore, because of the container pull from ghcr.io</div><div dir="auto"><br></div><div dir="auto">Is there a way, to still install packetfence from local sources ?</div><div dir="auto"><br></div><div dir="auto">Best Regards</div><div dir="auto">Lucas</div></div> |
From: Arun K. <ak...@gm...> - 2024-09-26 05:15:11
|
Thank you so much Darren. This works perfectly when i see preview of the layout.html but when i see preview of the portal (by clicking "preview" button at the top) i still see the original layout without my background image. Is there any other file i should edit? On Wed, Sep 18, 2024 at 7:53 PM Satkunas, Darren <dsa...@ak...> wrote: > In the connection profile edit layout.html with the following 2 changes: > > Line 14, replace <body> with - adjust the path in url() to the image you > want to use > > <body style="background-color: transparent; background-image: > url(/portal_preview/profile-templates/default/logo.png); background-repeat: > repeat; background-attachment: fixed; background-position: center;"> > > > > Line 21, replace <header> with > > <header style="background-color: transparent;"> > > > > > > *Darren Satkunas* > *Software Engineer Senior Lead* > > [image: signature_91702086] > > *Office:* +1.617.444.1234 > *Cell:* +1.617.444.1234 > > Akamai Technologies > 145 Broadway > Cambridge, MA 02142 > > Connect with Us: > > [image: signature_117365058] <https://community.akamai.com/> [image: > signature_1004417448] <http://blogs.akamai.com/> [image: > signature_3192415103] <https://twitter.com/akamai> [image: > signature_2883625797] <http://www.facebook.com/AkamaiTechnologies> [image: > signature_3378242615] > <http://www.linkedin.com/company/akamai-technologies> [image: > signature_274248214] > <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > > > > > > *From: *Arun Kangle via PacketFence-users < > pac...@li...> > *Reply-To: *"pac...@li..." < > pac...@li...> > *Date: *Friday, September 13, 2024 at 12:10 PM > *To: *"pac...@li..." < > pac...@li...> > *Cc: *Arun Kangle <ak...@gm...> > *Subject: *[PacketFence-users] Adding logo and background image to the > portal > > > > Hello All, Could anyone please point me to a quick way to add the > background image and a logo to the captive portal? Many thanks in advance, > - Arun > > > > ZjQcmQRYFpfptBannerStart > > *This Message Is From an External Sender * > > This message came from outside your organization. > > ZjQcmQRYFpfptBannerEnd > > Hello All, > > Could anyone please point me to a quick way to add the background image > and a logo to the captive portal? > > > > Many thanks in advance, > > - Arun > |
From: Denis W. <de...@ni...> - 2024-09-25 04:16:56
|
Hi, My Packet Fence installation is made up of the following environment configuration; 1. Microsoft Hyper-V RedHat 8 VM 4 vCPU 16GB 200GB HDD I have noted that the Packetfence Server uses 22GB of RAM and Requests for 29GB of RAM. Currently, I have configured the VM to have dynamic memory of up to 32GB. However, for a System that is yet to start authenticating users. Is this not too excessive? I would like the system to only use 16GB of RAM. The Number of Devices I plan to Authenticate will be only 30 to 50 MAX. Please advise |
From: Chris V. <chr...@z9...> - 2024-09-20 10:58:03
|
Hey Peter, Am 16.09.24 um 16:30 schrieb Peter Jensen via PacketFence-users: > However, VLAN assignment is not working as expected. To distinguish between a problem on the switch and a packetfence problem you could trace the radius conversation using `radsniff -X -i <interface to switch>`. If the radius answer to the switch allowing access contains the correct vlan you'll need to look into the switch configuration or into the topic how the radius answer would need to change so that the switch does interpret the vlan correctly. Also it could be that the vlan does not exist on the switch and therefor the switch cannot use it. If you do not see the (correct) vlan in the radius answer you'll probably need to look at your packetfence profiles. Chris -- Packetfence Matrix Room https://matrix.to/#/%23packetfence:matrix.org |
From: Chris V. <chr...@z9...> - 2024-09-20 10:52:59
|
Hey Yannik, Am 19.09.24 um 18:50 schrieb Yannik Sembritzki via PacketFence-users: > I would like to restrict MAC authenticated nodes to specific > switches/switchports. I'd have a look at vlan filters: you might be able to reject authentications based on the conditions 'connection_type' and 'ifIndex'. Chris -- Packetfence Matrix Room https://matrix.to/#/%23packetfence:matrix.org |
From: Peter J. <pac...@sc...> - 2024-09-19 20:28:20
|
Switch still fails with getting VLAN. Authentication works on, but no VLAN. To add more info. PFTEST works as expected. root@packetfence-14:/usr/local/pf/bin# ./pftest authentication "test01" "xxxxxxxx" "mydomain-Users" Testing authentication for "test01" Authenticating against 'mydomain-Users' in context 'admin' Authentication SUCCEEDED against mydomain-Users (Authentication successful.) Matched against mydomain-Users for 'authentication' rule VLAN_111 set_role : VLAN_111 set_access_duration : 1h Did not match against mydomain-Users for 'administration' rules Authenticating against 'mydomain-Users' in context 'portal' Authentication SUCCEEDED against mydomain-Users (Authentication successful.) Matched against mydomain-Users for 'authentication' rule VLAN_111 set_role : VLAN_111 set_access_duration : 1h Did not match against mydomain-Users for 'administration' rules On 16/09/2024 20.12, Rein van ‘t Veer via PacketFence-users wrote: > A few things: check if snmp traffic is working from packetfence to the > switch. > > Also check the radius return logs to see if the vlan is returned. This > is easy in the web interface. Under auditing; RADIUS logs you can see > the full return strings from PacketFence > > Example: > > RADIUS Request > Airespace-Wlan-Id = "1", Called-Station-Id = > "d4:6d:50:e3:ae:e0:Samvaerket-guests", Called-Station-SSID = > "Samvaerket-guests", Calling-Station-Id = "e6:63:3c:fb:8a:dc", > Cisco-AVPair = "service-type=Call Check", Cisco-AVPair = > "audit-session-id=1400330A0004884BFC03D52A", Cisco-AVPair = > "method=mab", Cisco-AVPair = "client-iif-id=1073747193", Cisco-AVPair > = "vlan-id=498", Cisco-AVPair = "cisco-wlan-ssid=Samvaerket-guests", > Cisco-AVPair = "wlan-profile-name=Samvaerket-guests", Event-Timestamp > = "Sep 16 2024 20:06:35 CEST", Framed-MTU = "1485", > FreeRADIUS-Client-IP-Address = "10.51.0.20", Message-Authenticator = > "0xaf1468be12d6bb5e7c6a432fa81225ef", NAS-IP-Address = "10.51.0.20", > NAS-Identifier = "WLC", NAS-Port = "51012", NAS-Port-Id = > "capwap_90000006", NAS-Port-Type = "Wireless-802.11", > PacketFence-KeyBalanced = "c2acf8e4cbb314039e027c04672c5bd4", > PacketFence-Radius-Ip = "10.51.0.11", Realm = "null", Service-Type = > "Call-Check", Stripped-User-Name = "e6633cfb8adc", User-Name = > "e6633cfb8adc", User-Password = "******" > > RADIUS Reply > REST-HTTP-Status-Code = "200", Tunnel-Medium-Type = "IEEE-802", > Tunnel-Private-Group-Id = "500", Tunnel-Type = "VLAN" > > Once you have verified the vlan is returned you can see what the > switch is doing with the request. > Sent from my iPhone > >> On 16 Sep 2024, at 16.43, Peter Jensen via PacketFence-users >> <pac...@li...> wrote: >> >> >> >> Hello, >> >> I’m currently working on a PacketFence setup and having trouble with >> the dynamic VLAN assignment. Authentication is functioning correctly >> (verified via logs), and the switch confirms that 802.1X >> authentication is successful. However, VLAN assignment is not working >> as expected. >> >> Here’s a summary of my setup and the steps I’ve taken: >> >> • I have added the switch and enabled Role Mapping by VLAN ID, >> assigning the correct VLAN ID. >> • I created an Authentication Source with Authentication Rules >> using the memberof condition and the full DN of the LDAP group. This >> has been tested with and without any conditions, with the same result. >> • The issue persists where no VLAN is assigned after >> successful authentication. >> >> Logs >> >> Below are some logs that may help diagnose the issue: >> >> *packetfence.log* >> >> 2024-09-16T15:57:44.791790+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Instantiate profile 8021x >> (pf::Connection::ProfileFactory::_from_profile) >> 2024-09-16T15:57:44.809341+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Found authentication source(s) : '' for realm >> 'null' (pf::config::util::filter_authentication_sources) >> 2024-09-16T15:57:44.809463+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] No rules matches or no category defined for >> the node, set it as unreg. (pf::role::getNodeInfoForAutoReg) >> 2024-09-16T15:57:44.809463+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: >> [mac:00:e0:4c:68:08:27] No category computed for autoreg >> (pf::role::getNodeInfoForAutoReg) >> 2024-09-16T15:57:44.814522+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Username was NOT defined or unable to match a >> role - returning node based role '' (pf::role::getRegisteredRole) >> 2024-09-16T15:57:44.814864+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: >> [mac:00:e0:4c:68:08:27] No parameter Vlan found in conf/switches.conf >> for the switch 192.168.188.212 (pf::Switch::getVlanByName) >> >> >> *radius.log* >> >> 2024-09-16T15:57:44.258471+02:00 packetfence-14 auth[91590]: Adding >> client 192.168.188.212/32 >> 2024-09-16T15:57:44.827353+02:00 packetfence-14 auth[91590]: (42) >> Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli >> 00:e0:4c:68:08:27 via TLS tunnel) >> 2024-09-16T15:57:44.837698+02:00 packetfence-14 auth[91590]: (43) >> Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli >> 00:e0:4c:68:08:27) >> >> >> What I’ve Tried: >> >> • Confirmed that the authentication source is correctly >> configured, using an LDAP group with the full DN in the rule. >> • Verified that the switch is properly configured for 802.1X >> and dynamic VLAN assignment. >> • Examined the PacketFence configuration for role mapping and >> VLAN settings, but the VLAN remains undefined after authentication. >> >> Environment: >> >> • PacketFence version: 14 >> • Switch model and firmware: >> vios_l2-ADVENTERPRISEK9-M), Experimental Version 15.2(20200924:215240 >> C3560 Software (C3560-IPBASE-M), >> Version 12.2(35)SE5 >> • Authentication source: ActiveDirecty >> • OS of PacketFence server: Debian 12 >> >> Any help or direction on how to resolve this VLAN assignment issue >> would be appreciated! Has anyone encountered something similar? >> >> Thanks in advance. >> >> Best regards, >> [Your Name] >> >> _______________________________________________ >> PacketFence-users mailing list >> Pac...@li... >> https://lists.sourceforge.net/lists/listinfo/packetfence-users > > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users |
From: Yannik S. <ya...@se...> - 2024-09-19 16:51:02
|
Hi, I would like to restrict MAC authenticated nodes to specific switches/switchports. From other NACs I thought I could simply set this as a custom attribute on the node, and then use this as a filter, but that does not seem possible. What would be a good way to implement this in PF? I have the switch/switchport assignments in netbox, so using a custom script that hooks into the authentication and calls the netbox API would also be possible. Best regards Yannik |
From: Yannik S. <ya...@se...> - 2024-09-19 16:43:04
|
Hi, I am doing a fresh step-by-step packetfence 14.0 / debian 12 install. So far, I did the basic user/network interfaced setup, configured a switch and registered a node. Then I tested MAC authentication with the juniper switch and it worked fine. Now I wanted to enable accounting to get proper online/offline status. I configured the accounting on my switch and can confirm that it is correctly sending accounting packets to port 1813 on packetfence. However, the accounting does not seem to work, I do not see online/offline status on my node, nor anything in reports/accounting, and the packets sent from the switch go unanswered. I did enable 'Process Bandwidth Accounting' in /Configuration → System Configuration → RADIUS → General/ menu and restarted pfacct. (per the docs) I could also see the pfacct container running: 473d8718b3cf packetfence/pfacct:maintenance-14-0 "/bin/sh -c /usr/loc…" 29 minutes ago Up 29 minutes 0.0.0.0:1813->1813/udp, :::1813->1813/udp, 0.0.0.0:2056->2056/udp, :::2056->2056/udp pfacct No /usr/local/pf/logs/pfacct.log file exists for some reason. docker logs pfacct results in "Error response from daemon: configured logging driver does not support reading". Stopping pfacct in the webinterface and running /usr/local/pf/sbin/pfacct manually lead to accounting to work. Online/offline even worked with "Process Bandwidth Accounting" disabled, contrary to the docs. The command did however not emit any log messages, and it did not have any parameters to increase logging. After all this testing, I stopped the manually started pfacct, started the containerized one via status/services, and tested again. Same issue. Per https://www.packetfence.org/doc/PacketFence_Installation_Guide.html#_pfacct_track_bandwidth_usage, radiusd-acct is retired and pfacct should be used. I tested radiusd-acct anyway (after disabling pfacct), but it did not work either (raddebug shows thousands of lines of debug output, it no response is every sent to the switch). Why is this still being shipped if it should not be used anymore/isn't even working? How can I further debug / fix the containerized pfacct? Best regards Yannik |
From: Andrey C. <che...@np...> - 2024-09-19 09:43:30
|
Hi Yannik, Thank you for your prompt and insightful response. I’ll be testing the custom syslog configuration in my lab shortly. As for the pull request, since I'm not entirely sure how to resolve the issue, I believe it leans more toward a bug report. Therefore, I've gone ahead and created one here: https://github.com/inverse-inc/packetfence/issues/8316 -- Andrey Chernyakov Senior Network and Security Engineer email: che...@np... NPS Consult S.A. L-5687, Dalheim Luxembourg On 18 Sep 2024 at 12:52 +0200, Yannik Sembritzki via PacketFence-users <pac...@li...>, wrote: > Hi Andrey, > > I guess you could completely create your own rsyslog config by putting it in a different file (/etc/rsyslog.d/my-custom-syslog.conf). > > Apart from this, extending the the syslogtag field length seems like something that should be fixed in upstream. Could you open a PR for this? > Perhaps the SYSLOG.ident field can be added in upstream too, if it makes sense. I don't know what that contains - googling "rsyslog syslog.ident" did not yield any useful results. > > Best regards > Yannik > > On 18.09.24 10:50, Andrey Chernyakov via PacketFence-users wrote: > > Hello PacketFence community, > > > > I am currently configuring rsyslog on a server running PacketFence to forward log messages with a custom template that extends the syslogtag to 64 characters and adds a SYSLOG.ident field. The configuration works fine, but every time I restart the rsyslog service, my custom configuration gets overridden. > > > > Details: > > > > • PacketFence Version: 13.1 > > • OS: Debian 11 (deployed from PacketFence ZEN appliance image) > > • Rsyslog Configuration: I'm using a custom template in /etc/rsyslog.d/packetfence.conf that looks like this: > > > > $template ForwardedMessageTemplate,"%timegenerated% %HOSTNAME% SYSLOG.ident %syslogtag:1:64%%msg%\n" > > @@192.168.1.100:514;ForwardedMessageTemplate > > > > • Issue: After restarting rsyslog, the custom configuration is replaced, and the default settings are applied. Is there a recommended approach for preserving rsyslog configurations across service restarts in a PacketFence setup? > > > > By default, the syslogtag message is limited to 32 characters. This limitation is evident in log entries such as: > > > > • api-frontend-docker-wrapper[1587 > > • radiusd-load-balancer-docker-wra > > > > > > I'd appreciate any insights or best practices from the community. > > Thanks in advance! > > > > <jokVw0kJDUYhn8bX.png> > > > > -- > > Andrey Chernyakov > > Senior Network and Security Engineer > > > > email: che...@np... > > phone: (+352) 621260657 > > > > NPS Consult S.A. > > L-5687, Dalheim > > Luxembourg > > > > > > _______________________________________________ > > PacketFence-users mailing list > > Pac...@li... > > https://lists.sourceforge.net/lists/listinfo/packetfence-users > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users |
From: Denis W. <de...@ni...> - 2024-09-19 05:04:59
|
Some more details systemctl start packetfence Job for packetfence.service failed because a timeout was exceeded. See "systemctl status packetfence.service" and "journalctl -xeu packetfence.service" for details. journalctl -xeu packetfence.service Sep 19 07:46:27 ServerXXXX sudo[39384]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 19 07:46:28 ServerXXXX sudo[39384]: pam_unix(sudo:session): session closed for user root Sep 19 07:46:28 ServerXXXX pfcmd[38563]: Service Status PID Sep 19 07:46:28 ServerXXXX pfcmd[38563]: Checking configuration sanity... Sep 19 07:46:28 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: Connecting to MySQL database (pfconfig::backend::mysql::_get_db) Sep 19 07:46:28 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: secure redirect has been disabled since the portal certificate i> Sep 19 07:46:42 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: Connecting to MySQL database (pfconfig::backend::mysql::_get_db) Sep 19 07:46:42 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: secure redirect has been disabled since the portal certificate i> Sep 19 07:46:47 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: Processing rule 'pfdns' (pf::config::builder::filter_engine::bui> Sep 19 07:46:47 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: Processing rule 'pf_deauth_from_wireless_secure' (pf::config::bu> Sep 19 07:46:47 ServerXXXX sudo[39407]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/systemctl status packetfence.target Sep 19 07:46:47 ServerXXXX sudo[39407]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 19 07:46:47 ServerXXXX sudo[39407]: pam_unix(sudo:session): session closed for user root Sep 19 07:46:47 ServerXXXX sudo[39409]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/systemctl isolate packetfence.target Sep 19 07:46:47 ServerXXXX sudo[39409]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 19 07:48:20 ServerXXXX systemd[1]: packetfence.service: start operation timed out. Terminating. Sep 19 07:48:20 ServerXXXX sudo[39409]: pam_unix(sudo:session): session closed for user root Sep 19 07:48:20 ServerXXXX systemd[1]: packetfence.service: Failed with result 'timeout'. ░░ Subject: Unit failed ░░ Defined-By: systemd ░░ Support: https://www.debian.org/support ░░ ░░ The unit packetfence.service has entered the 'failed' state with result 'timeout'. Sep 19 07:48:20 ServerXXXX systemd[1]: Failed to start packetfence.service - PacketFence Service. ░░ Subject: A start job for unit packetfence.service has failed ░░ Defined-By: systemd ░░ Support: https://www.debian.org/support ░░ ░░ A start job for unit packetfence.service has finished with a failure. ░░ ░░ The job identifier is 40646 and the job result is failed. Sep 19 07:48:20 ServerXXXX systemd[1]: packetfence.service: Consumed 28.787s CPU time. ░░ Subject: Resources consumed by unit runtime ░░ Defined-By: systemd ░░ Support: https://www.debian.org/support ░░ ░░ The unit packetfence.service completed and consumed the indicated resources. On Thu, 19 Sept 2024 at 05:49, Denis Wahome <de...@ni...> wrote: > I have the following configuration for a new installation, > > 19GB RAM > 4 vCPU > 200GB HDD > > This is the status; > > systemctl status packetfence > × packetfence.service - PacketFence Service > Loaded: loaded (/lib/systemd/system/packetfence.service; enabled; > preset: enabled) > Active: failed (Result: timeout) since Wed 2024-09-18 19:50:50 EAT; > 9h ago > Process: 1091 ExecStart=/usr/local/pf/bin/pfcmd service pf start > (code=killed, signal=TERM) > CPU: 28.569s > > Sep 18 19:49:20 gatekeeper sudo[2432]: root : PWD=/ ; USER=root ; > COMMAND=/usr/bin/systemctl status packetfence.target > Sep 18 19:49:20 gatekeeper sudo[2432]: pam_unix(sudo:session): session > opened for user root(uid=0) by (uid=0) > Sep 18 19:49:20 gatekeeper sudo[2432]: pam_unix(sudo:session): session > closed for user root > Sep 18 19:49:20 gatekeeper sudo[2434]: root : PWD=/ ; USER=root ; > COMMAND=/usr/bin/systemctl isolate packetfence.target > Sep 18 19:49:20 gatekeeper sudo[2434]: pam_unix(sudo:session): session > opened for user root(uid=0) by (uid=0) > Sep 18 19:50:49 gatekeeper systemd[1]: packetfence.service: start > operation timed out. Terminating. > Sep 18 19:50:49 gatekeeper sudo[2434]: pam_unix(sudo:session): session > closed for user root > Sep 18 19:50:50 gatekeeper systemd[1]: packetfence.service: Failed with > result 'timeout'. > Sep 18 19:50:50 gatekeeper systemd[1]: Failed to start packetfence.service > - PacketFence Service. > Sep 18 19:50:50 gatekeeper systemd[1]: packetfence.service: Consumed > 28.569s CPU time. > |
From: Denis W. <de...@ni...> - 2024-09-19 03:14:30
|
I have the following configuration for a new installation, 19GB RAM 4 vCPU 200GB HDD This is the status; systemctl status packetfence × packetfence.service - PacketFence Service Loaded: loaded (/lib/systemd/system/packetfence.service; enabled; preset: enabled) Active: failed (Result: timeout) since Wed 2024-09-18 19:50:50 EAT; 9h ago Process: 1091 ExecStart=/usr/local/pf/bin/pfcmd service pf start (code=killed, signal=TERM) CPU: 28.569s Sep 18 19:49:20 gatekeeper sudo[2432]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/systemctl status packetfence.target Sep 18 19:49:20 gatekeeper sudo[2432]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 18 19:49:20 gatekeeper sudo[2432]: pam_unix(sudo:session): session closed for user root Sep 18 19:49:20 gatekeeper sudo[2434]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/systemctl isolate packetfence.target Sep 18 19:49:20 gatekeeper sudo[2434]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 18 19:50:49 gatekeeper systemd[1]: packetfence.service: start operation timed out. Terminating. Sep 18 19:50:49 gatekeeper sudo[2434]: pam_unix(sudo:session): session closed for user root Sep 18 19:50:50 gatekeeper systemd[1]: packetfence.service: Failed with result 'timeout'. Sep 18 19:50:50 gatekeeper systemd[1]: Failed to start packetfence.service - PacketFence Service. Sep 18 19:50:50 gatekeeper systemd[1]: packetfence.service: Consumed 28.569s CPU time. |
From: FLÁVIO S. <adm...@gm...> - 2024-09-18 21:57:16
|
My friends, how I can go to the phone number field in captive portal so that the person can only use digit numbers and not other characters? Too need that minimum and Maximum lenght caracteres for Cell númber. |
From: Satkunas, D. <dsa...@ak...> - 2024-09-18 14:24:45
|
In the connection profile edit layout.html with the following 2 changes: Line 14, replace <body> with - adjust the path in url() to the image you want to use <body style="background-color: transparent; background-image: url(/portal_preview/profile-templates/default/logo.png); background-repeat: repeat; background-attachment: fixed; background-position: center;"> Line 21, replace <header> with <header style="background-color: transparent;"> Darren Satkunas Software Engineer Senior Lead [signature_91702086] Office: +1.617.444.1234 Cell: +1.617.444.1234 Akamai Technologies 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_117365058]<https://community.akamai.com/> [signature_1004417448] <http://blogs.akamai.com/> [signature_3192415103] <https://twitter.com/akamai> [signature_2883625797] <http://www.facebook.com/AkamaiTechnologies> [signature_3378242615] <http://www.linkedin.com/company/akamai-technologies> [signature_274248214] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> From: Arun Kangle via PacketFence-users <pac...@li...> Reply-To: "pac...@li..." <pac...@li...> Date: Friday, September 13, 2024 at 12:10 PM To: "pac...@li..." <pac...@li...> Cc: Arun Kangle <ak...@gm...> Subject: [PacketFence-users] Adding logo and background image to the portal Hello All, Could anyone please point me to a quick way to add the background image and a logo to the captive portal? Many thanks in advance, - Arun ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hello All, Could anyone please point me to a quick way to add the background image and a logo to the captive portal? Many thanks in advance, - Arun |
From: Peter J. <pac...@sc...> - 2024-09-18 14:04:43
|
Why SNMP ? That should not be needed for assignment VLANs through radius responses. I cannot find the log where where the full radius parameters are present, more of this futher down in this mail. Only the radius.log, which contains the following, which is telling me that i am authenticated. 2024-09-18T15:49:35.306664+02:00 packetfence-14 auth[148051]: (132) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00 via TLS tunnel) 2024-09-18T15:49:35.316789+02:00 packetfence-14 auth[148051]: (133) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) 2024-09-18T15:50:22.978230+02:00 packetfence-14 auth[148051]: (145) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00 via TLS tunnel) 2024-09-18T15:50:22.987215+02:00 packetfence-14 auth[148051]: (146) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) 2024-09-18T15:51:11.071693+02:00 packetfence-14 auth[148051]: (159) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00 via TLS tunnel) 2024-09-18T15:51:11.080839+02:00 packetfence-14 auth[148051]: (160) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) 2024-09-18T15:51:58.847027+02:00 packetfence-14 auth[148051]: Adding client 10.249.179.179/32 2024-09-18T15:51:58.983924+02:00 packetfence-14 auth[148051]: (172) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00 via TLS tunnel) 2024-09-18T15:51:58.992849+02:00 packetfence-14 auth[148051]: (173) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) The Packetfence.log states that i am hitting realm default. In realm default i have selected the, and there are no rules, and the role has already been computed. and the Returned vlan is undefined. So even though i have the Role by vlan id, i have made the connection profile with the following and selected the correct authentication source under sources. And the user bind has is being validated through the test button under the connection profile and the authentication rules are simpel: i am still not getting the role selected. 2024-09-18T15:51:11.039159+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Instantiate profile mydomain-Users (pf::Connection::ProfileFactory::_from_profile) 2024-09-18T15:51:11.054188+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Found authentication source(s) : '' for realm 'default' (pf::config::util::filter_authentication_sources) 2024-09-18T15:51:11.054188+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] No rules matches or no category defined for the node, set it as unreg. (pf::role::getNodeInfoForAutoReg) 2024-09-18T15:51:11.054188+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] No category computed for autoreg (pf::role::getNodeInfoForAutoReg) 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Found authentication source(s) : '' for realm 'default' (pf::config::util::filter_authentication_sources) 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Role has already been computed and we don't want to recompute it. Getting role from node_info (pf::role::getRegisteredRole) 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $role in concatenation (.) or string at /usr/local/pf/lib/pf/role.pm line 489. 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Username was NOT defined or unable to match a role - returning node based role '' (pf::role::getRegisteredRole) 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] PID: "default", Status: reg Returned VLAN: (undefined), Role: (undefined) (pf::role::fetchRoleForNode) 2024-09-18T15:51:11.060664+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $vlanName in hash element at /usr/local/pf/lib/pf/Switch.pm line 683. 2024-09-18T15:51:11.060664+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $name in exists at /usr/local/pf/lib/pf/Switch.pm line 717. 2024-09-18T15:51:11.061122+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $vlanName in concatenation (.) or string at /usr/local/pf/lib/pf/Switch.pm line 690. 2024-09-18T15:51:11.061122+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] No parameter Vlan found in conf/switches.conf for the switch 10.249.179.179 (pf::Switch::getVlanByName) 2024-09-18T15:51:11.063646+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $roleName in hash element at /usr/local/pf/lib/pf/Switch.pm line 640. 2024-09-18T15:51:11.063646+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $name in exists at /usr/local/pf/lib/pf/Switch.pm line 661. 2024-09-18T15:51:11.063646+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $roleName in concatenation (.) or string at /usr/local/pf/lib/pf/Switch.pm line 647. 2024-09-18T15:51:11.063646+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] No parameter Role found in conf/switches.conf for the switch 10.249.179.179 (pf::Switch::getRoleByName) 2024-09-18T15:51:11.068254+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] security_event 1300003 force-closed for 50:00:00:04:00:00 (pf::security_event::security_event_force_close) 2024-09-18T15:51:11.068685+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Instantiate profile mydomain-Users (pf::Connection::ProfileFactory::_from_profile) I cannot see where i have made a mistake, but it is not working for me on both virtual and physical switches. Final note, i have tried to find the raduis request log, but without any luck. I tried to grep after the NAS-IP-Address in both OS logs and in PF logs and tested the grep command after the username i am testing with. root@packetfence-14:/usr/local/pf/logs# grep -rni 'NAS-IP-Address' /usr/local/pf/logs/* root@packetfence-14:/usr/local/pf/logs# grep -rni 'NAS-IP-Address' /var/log/* root@packetfence-14:/usr/local/pf/logs# root@packetfence-14:/usr/local/pf/logs# grep -rni 'test01' /usr/local/pf/logs/* /usr/local/pf/logs/radius.log:163:2024-09-17T19:55:31.623353+02:00 packetfence-14 auth[55935]: (2) Login incorrect (eap: rlm_eap (EAP): No EAP session matching state 0xfc3b8a28fc399384): [test01@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) So any pointers would be helpful :-) Thanks in advance \Peter On 16/09/2024 20.12, Rein van ‘t Veer via PacketFence-users wrote: > A few things: check if snmp traffic is working from packetfence to the > switch. > > Also check the radius return logs to see if the vlan is returned. This > is easy in the web interface. Under auditing; RADIUS logs you can see > the full return strings from PacketFence > > Example: > > RADIUS Request > Airespace-Wlan-Id = "1", Called-Station-Id = > "d4:6d:50:e3:ae:e0:Samvaerket-guests", Called-Station-SSID = > "Samvaerket-guests", Calling-Station-Id = "e6:63:3c:fb:8a:dc", > Cisco-AVPair = "service-type=Call Check", Cisco-AVPair = > "audit-session-id=1400330A0004884BFC03D52A", Cisco-AVPair = > "method=mab", Cisco-AVPair = "client-iif-id=1073747193", Cisco-AVPair > = "vlan-id=498", Cisco-AVPair = "cisco-wlan-ssid=Samvaerket-guests", > Cisco-AVPair = "wlan-profile-name=Samvaerket-guests", Event-Timestamp > = "Sep 16 2024 20:06:35 CEST", Framed-MTU = "1485", > FreeRADIUS-Client-IP-Address = "10.51.0.20", Message-Authenticator = > "0xaf1468be12d6bb5e7c6a432fa81225ef", NAS-IP-Address = "10.51.0.20", > NAS-Identifier = "WLC", NAS-Port = "51012", NAS-Port-Id = > "capwap_90000006", NAS-Port-Type = "Wireless-802.11", > PacketFence-KeyBalanced = "c2acf8e4cbb314039e027c04672c5bd4", > PacketFence-Radius-Ip = "10.51.0.11", Realm = "null", Service-Type = > "Call-Check", Stripped-User-Name = "e6633cfb8adc", User-Name = > "e6633cfb8adc", User-Password = "******" > > RADIUS Reply > REST-HTTP-Status-Code = "200", Tunnel-Medium-Type = "IEEE-802", > Tunnel-Private-Group-Id = "500", Tunnel-Type = "VLAN" > > Once you have verified the vlan is returned you can see what the > switch is doing with the request. > Sent from my iPhone > >> On 16 Sep 2024, at 16.43, Peter Jensen via PacketFence-users >> <pac...@li...> wrote: >> >> >> >> Hello, >> >> I’m currently working on a PacketFence setup and having trouble with >> the dynamic VLAN assignment. Authentication is functioning correctly >> (verified via logs), and the switch confirms that 802.1X >> authentication is successful. However, VLAN assignment is not working >> as expected. >> >> Here’s a summary of my setup and the steps I’ve taken: >> >> • I have added the switch and enabled Role Mapping by VLAN ID, >> assigning the correct VLAN ID. >> • I created an Authentication Source with Authentication Rules >> using the memberof condition and the full DN of the LDAP group. This >> has been tested with and without any conditions, with the same result. >> • The issue persists where no VLAN is assigned after >> successful authentication. >> >> Logs >> >> Below are some logs that may help diagnose the issue: >> >> *packetfence.log* >> >> 2024-09-16T15:57:44.791790+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Instantiate profile 8021x >> (pf::Connection::ProfileFactory::_from_profile) >> 2024-09-16T15:57:44.809341+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Found authentication source(s) : '' for realm >> 'null' (pf::config::util::filter_authentication_sources) >> 2024-09-16T15:57:44.809463+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] No rules matches or no category defined for >> the node, set it as unreg. (pf::role::getNodeInfoForAutoReg) >> 2024-09-16T15:57:44.809463+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: >> [mac:00:e0:4c:68:08:27] No category computed for autoreg >> (pf::role::getNodeInfoForAutoReg) >> 2024-09-16T15:57:44.814522+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Username was NOT defined or unable to match a >> role - returning node based role '' (pf::role::getRegisteredRole) >> 2024-09-16T15:57:44.814864+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: >> [mac:00:e0:4c:68:08:27] No parameter Vlan found in conf/switches.conf >> for the switch 192.168.188.212 (pf::Switch::getVlanByName) >> >> >> *radius.log* >> >> 2024-09-16T15:57:44.258471+02:00 packetfence-14 auth[91590]: Adding >> client 192.168.188.212/32 >> 2024-09-16T15:57:44.827353+02:00 packetfence-14 auth[91590]: (42) >> Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli >> 00:e0:4c:68:08:27 via TLS tunnel) >> 2024-09-16T15:57:44.837698+02:00 packetfence-14 auth[91590]: (43) >> Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli >> 00:e0:4c:68:08:27) >> >> >> What I’ve Tried: >> >> • Confirmed that the authentication source is correctly >> configured, using an LDAP group with the full DN in the rule. >> • Verified that the switch is properly configured for 802.1X >> and dynamic VLAN assignment. >> • Examined the PacketFence configuration for role mapping and >> VLAN settings, but the VLAN remains undefined after authentication. >> >> Environment: >> >> • PacketFence version: 14 >> • Switch model and firmware: >> vios_l2-ADVENTERPRISEK9-M), Experimental Version 15.2(20200924:215240 >> C3560 Software (C3560-IPBASE-M), >> Version 12.2(35)SE5 >> • Authentication source: ActiveDirecty >> • OS of PacketFence server: Debian 12 >> >> Any help or direction on how to resolve this VLAN assignment issue >> would be appreciated! Has anyone encountered something similar? >> >> Thanks in advance. >> >> Best regards, >> [Your Name] >> >> _______________________________________________ >> PacketFence-users mailing list >> Pac...@li... >> https://lists.sourceforge.net/lists/listinfo/packetfence-users > > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users |
From: Goimard, J. <jeg...@ak...> - 2024-09-18 12:18:11
|
Hi Arun, Thanks. Looks like it is from there: https://mariadb.org/mariadb-dump-file-compatibility-change/ The dump is done with a wrong version "MariaDB dump 10.19 Distrib 10.5.26-MariaDB, for debian-linux-gnu (x86_64)" Did you follow that https://github.com/inverse-inc/packetfence/issues/8257#issuecomment-2353655213 ? We are not using "10.5.26" not in PF13.2 or before. You should fix that. Check the version of your mariadb-backup if you have one. You can also check the PR about documentation there: https://github.com/inverse-inc/packetfence/pull/8313 You will find there command line that can help you to debug your issue. Good luck. Thank you Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle <ak...@gm...> Sent: Wednesday, September 18, 2024 2:27:26 AM To: Goimard, Jeremy Cc: pac...@li... Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 /*M!999999\- enable the sandbox mode */ -- MariaDB dump 10. 19 Distrib 10. 5. 26-MariaDB, for debian-linux-gnu (x86_64) -- -- Host: localhost Database: pf -- ------------------------------------------------------ -- Server version 10. 5. 24-MariaDB-1: 10. 5. 24+maria~deb11 ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd /*M!999999\- enable the sandbox mode */ -- MariaDB dump 10.19 Distrib 10.5.26-MariaDB, for debian-linux-gnu (x86_64) -- -- Host: localhost Database: pf -- ------------------------------------------------------ -- Server version 10.5.24-MariaDB-1:10.5.24+maria~deb11 /*!40101 SET @OLD_CHARACTER_SET_CLIENT=@@CHARACTER_SET_CLIENT */; /*!40101 SET @OLD_CHARACTER_SET_RESULTS=@@CHARACTER_SET_RESULTS */; /*!40101 SET @OLD_COLLATION_CONNECTION=@@COLLATION_CONNECTION */; /*!40101 SET NAMES utf8mb4 */; /*!40103 SET @OLD_TIME_ZONE=@@TIME_ZONE */; /*!40103 SET TIME_ZONE='+00:00' */; /*!40014 SET @OLD_UNIQUE_CHECKS=@@UNIQUE_CHECKS, UNIQUE_CHECKS=0 */; /*!40014 SET @OLD_FOREIGN_KEY_CHECKS=@@FOREIGN_KEY_CHECKS, FOREIGN_KEY_CHECKS=0 */; /*!40101 SET @OLD_SQL_MODE=@@SQL_MODE, SQL_MODE='NO_AUTO_VALUE_ON_ZERO' */; /*!40111 SET @OLD_SQL_NOTES=@@SQL_NOTES, SQL_NOTES=0 */; -- -- Table structure for table `action` -- DROP TABLE IF EXISTS `action`; /*!40101 SET @saved_cs_client = @@character_set_client */; /*!40101 SET character_set_client = utf8 */; CREATE TABLE `action` ( `security_event_id` int(11) NOT NULL, `action` varchar(255) NOT NULL, PRIMARY KEY (`security_event_id`,`action`), CONSTRAINT `FOREIGN` FOREIGN KEY (`security_event_id`) REFERENCES `class` (`security_event_id`) ON DELETE CASCADE ON UPDATE CASCADE ) ENGINE=InnoDB DEFAULT CHARSET=utf8mb4 COLLATE=utf8mb4_general_ci; /*!40101 SET character_set_client = @saved_cs_client */; -- -- Dumping data for table `action` -- LOCK TABLES `action` WRITE; /*!40000 ALTER TABLE `action` DISABLE KEYS */; INSERT IGNORE INTO `action` VALUES (0,'email_admin'),(1100001,'email_admin'),(1100001,'reevaluate_access'),(1100002,'email_admin'),(1100002,'reevaluate_access'),(1100003,'email_ admin'),(1100003,'reevaluate_access'),(1100004,'email_admin'),(1100004,'reevaluate_access'),(1100006,'email_admin'),(1100006,'reevaluate_access'),(1100007,'autoreg'),(1100008,'e mail_admin'),(1100008,'reevaluate_access'),(1100009,'email_admin'),(1100010,'email_admin'),(1100011,'email_admin'),(1100012,'email_admin'),(1100020,'email_admin'),(1100021,'emai l_admin'),(1100022,'email_admin'),(1100023,'email_admin'),(1200001,'reevaluate_access'),(1200002,'reevaluate_access'),(1200003,'reevaluate_access'),(1300000,'reevaluate_access') ,(1300001,'reevaluate_access'),(1300002,'enforce_provisioning'),(1300003,'reevaluate_access'),(1300004,'email_admin'),(1300005,'email_admin'),(1300005,'email_user'),(1300005,'re evaluate_access'),(1300006,'email_admin'),(1300007,'email_admin'),(1300008,'email_admin'),(2000000,'email_admin'),(2000000,'reevaluate_access'),(2000032,'email_admin'),(2001569, 'email_admin'),(2001904,'email_admin'),(2001972,'email_admin'),(2002030,'email_admin'),(2002030,'reevaluate_access'),(2002201,'email_admin'),(3000001,'email_admin'),(3000001,'re evaluate_access'),(3000002,'email_admin'),(3000002,'reevaluate_access'),(3000003,'email_admin'),(3000003,'reevaluate_access'),(3000004,'email_admin'),(3000004,'reevaluate_access '),(3000005,'email_admin'),(3000005,'reevaluate_access'),(3000006,'email_admin'),(3000007,'email_admin'),(3000007,'reevaluate_access'),(3000008,'email_admin'),(3000008,'email_us er'); /*!40000 ALTER TABLE `action` ENABLE KEYS */; UNLOCK TABLES; -- On Tue, Sep 17, 2024 at 9:59 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, OK, that is a new one... Never seen that before. Could you share the first 10 to 20 lines of "packetfence-db-dump-2024-09-17_20h12.sql" ? It should not contain sensitive information. It looks like there is something on the beginning of the file that made this https://github.com/inverse-inc/packetfence/blob/devel/addons/functions/database.functions#L79<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/blob/devel/addons/functions/database.functions*L79__;Iw!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdNGO9Q5vQ$> failing. You should be able to extract it from the 13.2 VM with the following command line `gunzip /root/backup/packetfence-db-dump-2024-09-17_20h12.sql.gz` Thank you for your time and patience. Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdN3zkXtoQ$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdM5yCHlBA$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdOsZLvCAg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdO9ZfT5PQ$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 11:56:38 AM To: Goimard, Jeremy Cc: pac...@li...<mailto:pac...@li...> Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Now there is different error root@ packetfence: ~# /usr/local/pf/addons/full-import/import. sh -f /tmp/export. tgz /tmp/tmp. 5ivIKXyBON ~ ================================================================================= Extracting archive. . . Found ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Now there is different error root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.5ivIKXyBON ~ ================================================================================= Extracting archive... Found the following content in the archive: total 345072 -rw-r--r-- 1 root root 256 Sep 17 14:43 add_files.txt -rw-r--r-- 1 root root 1175 Sep 17 14:43 grants.sql -rw-r--r-- 1 root root 163588 Sep 17 14:42 packetfence-db-dump-2024-09-17_20h12.sql.gz -rw-r--r-- 1 root root 177166667 Sep 17 14:42 packetfence-files-dump-2024-09-17_20h08.tgz -rw-r--r-- 1 root root 1630 Sep 17 14:43 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 14:43 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_20h08.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_20h12.sql into pf ERROR at line 1: Unknown command '\-'. Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 7:08 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Ok, Sorry I wasn't clear enough. The problem is on the db backup that has been created on 13.2.0. Please, apply maintenance patches on 13.2.0, not on 14.0.0. The doc is the same for both https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches that is why the previous link used 14.0.0 Sorry for the misdirection. Thank you Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn8LlgQug$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGnipb216g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn13__cHA$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGl2ukdMoQ$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 9:26 AM To: Goimard, Jeremy Cc: pac...@li...<mailto:pac...@li...> Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit. service with SysV service script with /lib/systemd/systemd-sysv-install. ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1138 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 997 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 root@packetfence:~# systemctl stop packetfence-config root@packetfence:~# apt update Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security InRelease Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm InRelease Hit:4 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm-updates InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 10 packages can be upgraded. Run 'apt list --upgradable' to see them. W: http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the DEPRECATION section in apt-key(8) for details. root@packetfence:~# root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done Some packages could not be installed. This may mean that you have requested an impossible situation or if you are using the unstable distribution that some required packages have not yet been created or been moved out of Incoming. The following information may help to resolve the situation: The following packages have unmet dependencies: netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed E: Broken packages root@packetfence:~# apt-mark hold netdata netdata set on hold. root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done The following packages have been kept back: netdata packetfence The following packages will be upgraded: git git-man packetfence-archive-keyring packetfence-config packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid packetfence-redis-cache 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. Need to get 54.4 MB of archives. After this operation, 428 kB of additional disk space will be used. Do you want to continue? [Y/n] y Get:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] Get:2 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-archive-keyring all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-config all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-golang-daemon amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-redis-cache all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] Fetched 54.4 MB in 13s (4,027 kB/s) Reading changelogs... Done (Reading database ... 124611 files and directories currently installed.) Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 Unpacking packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Setting up packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Synchronizing state of redis-server.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable redis-server Setting up packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... pfconfig.conf already exists, won't touch it! Setting up packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up git-man (1:2.39.5-0+deb12u1) ... Setting up git (1:2.39.5-0+deb12u1) ... Processing triggers for man-db (2.11.2-2) ... root@packetfence:~# root@packetfence:~# root@packetfence:~# root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.DZrE5kSBrD ~ ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Please continue to use the sourceforge list. No private help if you are not a client. That been wrote, you need to apply maintenance patches first (https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due to that https://github.com/inverse-inc/packetfence/issues/8105<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which as been fixed. Thanks Regards. Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 2:20:18 AM To: Goimard, Jeremy Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14. 0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14.0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to add the IP address and copied the export.tdz from the source. root@packetfence:/usr/local/pf/conf# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.VG977Nk5tp /usr/local/pf/conf ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory Thanks, - Arun On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li...<mailto:pac...@li...> Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Yannik S. <ya...@se...> - 2024-09-18 10:36:46
|
Hi Andrey, I guess you could completely create your own rsyslog config by putting it in a different file (/etc/rsyslog.d/my-custom-syslog.conf). Apart from this, extending the the syslogtag field length seems like something that should be fixed in upstream. *Could you open a PR for this?* Perhaps the SYSLOG.ident field can be added in upstream too, if it makes sense. I don't know what that contains - googling "rsyslog syslog.ident" did not yield any useful results. Best regards Yannik On 18.09.24 10:50, Andrey Chernyakov via PacketFence-users wrote: > Hello PacketFence community, > > I am currently configuring |rsyslog| on a server running PacketFence > to forward log messages with a custom template that extends the > |syslogtag| to 64 characters and adds a |SYSLOG.ident| field. The > configuration works fine, but every time I restart the > |rsyslog| service, my custom configuration gets overridden. > > *Details:* > > * PacketFence Version: 13.1 > * OS: Debian 11 (deployed from PacketFence ZEN appliance image) > * Rsyslog Configuration: I'm using a custom template in > |/etc/rsyslog.d/packetfence.conf| that looks like this: > > $template ForwardedMessageTemplate,"%timegenerated% %HOSTNAME% SYSLOG.ident %syslogtag:1:64%%msg%\n" > @@192.168.1.100:514;ForwardedMessageTemplate > > * Issue: After restarting |rsyslog|, the custom configuration is > replaced, and the default settings are applied. Is there a > recommended approach for preserving |rsyslog| configurations > across service restarts in a PacketFence setup? > > By default, the |syslogtag| message is limited to 32 characters. This > limitation is evident in log entries such as: > > * |api-frontend-docker-wrapper[1587| > * |radiusd-load-balancer-docker-wra| > > > I'd appreciate any insights or best practices from the community. > Thanks in advance! > > > -- > Andrey Chernyakov > Senior Network and Security Engineer > > email: che...@np... > phone: (+352) 621260657 > > NPS Consult S.A. > L-5687, Dalheim > Luxembourg > > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users |
From: Andrey C. <che...@np...> - 2024-09-18 09:18:58
|
Hello PacketFence community, I am currently configuring rsyslog on a server running PacketFence to forward log messages with a custom template that extends the syslogtag to 64 characters and adds a SYSLOG.ident field. The configuration works fine, but every time I restart the rsyslog service, my custom configuration gets overridden. Details: • PacketFence Version: 13.1 • OS: Debian 11 (deployed from PacketFence ZEN appliance image) • Rsyslog Configuration: I'm using a custom template in /etc/rsyslog.d/packetfence.conf that looks like this: $template ForwardedMessageTemplate,"%timegenerated% %HOSTNAME% SYSLOG.ident %syslogtag:1:64%%msg%\n" @@192.168.1.100:514;ForwardedMessageTemplate • Issue: After restarting rsyslog, the custom configuration is replaced, and the default settings are applied. Is there a recommended approach for preserving rsyslog configurations across service restarts in a PacketFence setup? By default, the syslogtag message is limited to 32 characters. This limitation is evident in log entries such as: • api-frontend-docker-wrapper[1587 • radiusd-load-balancer-docker-wra I'd appreciate any insights or best practices from the community. Thanks in advance! -- Andrey Chernyakov Senior Network and Security Engineer email: che...@np... phone: (+352) 621260657 NPS Consult S.A. L-5687, Dalheim Luxembourg |
From: Arun K. <ak...@gm...> - 2024-09-18 06:27:48
|
/*M!999999\- enable the sandbox mode */ -- MariaDB dump 10.19 Distrib 10.5.26-MariaDB, for debian-linux-gnu (x86_64) -- -- Host: localhost Database: pf -- ------------------------------------------------------ -- Server version 10.5.24-MariaDB-1:10.5.24+maria~deb11 /*!40101 SET @OLD_CHARACTER_SET_CLIENT=@@CHARACTER_SET_CLIENT */; /*!40101 SET @OLD_CHARACTER_SET_RESULTS=@@CHARACTER_SET_RESULTS */; /*!40101 SET @OLD_COLLATION_CONNECTION=@@COLLATION_CONNECTION */; /*!40101 SET NAMES utf8mb4 */; /*!40103 SET @OLD_TIME_ZONE=@@TIME_ZONE */; /*!40103 SET TIME_ZONE='+00:00' */; /*!40014 SET @OLD_UNIQUE_CHECKS=@@UNIQUE_CHECKS, UNIQUE_CHECKS=0 */; /*!40014 SET @OLD_FOREIGN_KEY_CHECKS=@@FOREIGN_KEY_CHECKS, FOREIGN_KEY_CHECKS=0 */; /*!40101 SET @OLD_SQL_MODE=@@SQL_MODE, SQL_MODE='NO_AUTO_VALUE_ON_ZERO' */; /*!40111 SET @OLD_SQL_NOTES=@@SQL_NOTES, SQL_NOTES=0 */; -- -- Table structure for table `action` -- DROP TABLE IF EXISTS `action`; /*!40101 SET @saved_cs_client = @@character_set_client */; /*!40101 SET character_set_client = utf8 */; CREATE TABLE `action` ( `security_event_id` int(11) NOT NULL, `action` varchar(255) NOT NULL, PRIMARY KEY (`security_event_id`,`action`), CONSTRAINT `FOREIGN` FOREIGN KEY (`security_event_id`) REFERENCES `class` (`security_event_id`) ON DELETE CASCADE ON UPDATE CASCADE ) ENGINE=InnoDB DEFAULT CHARSET=utf8mb4 COLLATE=utf8mb4_general_ci; /*!40101 SET character_set_client = @saved_cs_client */; -- -- Dumping data for table `action` -- LOCK TABLES `action` WRITE; /*!40000 ALTER TABLE `action` DISABLE KEYS */; INSERT IGNORE INTO `action` VALUES (0,'email_admin'),(1100001,'email_admin'),(1100001,'reevaluate_access'),(1100002,'email_admin'),(1100002,'reevaluate_access'),(1100003,'email_ admin'),(1100003,'reevaluate_access'),(1100004,'email_admin'),(1100004,'reevaluate_access'),(1100006,'email_admin'),(1100006,'reevaluate_access'),(1100007,'autoreg'),(1100008,'e mail_admin'),(1100008,'reevaluate_access'),(1100009,'email_admin'),(1100010,'email_admin'),(1100011,'email_admin'),(1100012,'email_admin'),(1100020,'email_admin'),(1100021,'emai l_admin'),(1100022,'email_admin'),(1100023,'email_admin'),(1200001,'reevaluate_access'),(1200002,'reevaluate_access'),(1200003,'reevaluate_access'),(1300000,'reevaluate_access') ,(1300001,'reevaluate_access'),(1300002,'enforce_provisioning'),(1300003,'reevaluate_access'),(1300004,'email_admin'),(1300005,'email_admin'),(1300005,'email_user'),(1300005,'re evaluate_access'),(1300006,'email_admin'),(1300007,'email_admin'),(1300008,'email_admin'),(2000000,'email_admin'),(2000000,'reevaluate_access'),(2000032,'email_admin'),(2001569, 'email_admin'),(2001904,'email_admin'),(2001972,'email_admin'),(2002030,'email_admin'),(2002030,'reevaluate_access'),(2002201,'email_admin'),(3000001,'email_admin'),(3000001,'re evaluate_access'),(3000002,'email_admin'),(3000002,'reevaluate_access'),(3000003,'email_admin'),(3000003,'reevaluate_access'),(3000004,'email_admin'),(3000004,'reevaluate_access '),(3000005,'email_admin'),(3000005,'reevaluate_access'),(3000006,'email_admin'),(3000007,'email_admin'),(3000007,'reevaluate_access'),(3000008,'email_admin'),(3000008,'email_us er'); /*!40000 ALTER TABLE `action` ENABLE KEYS */; UNLOCK TABLES; -- On Tue, Sep 17, 2024 at 9:59 PM Goimard, Jeremy <jeg...@ak...> wrote: > Hi Arum, > > > OK, that is a new one... Never seen that before. > > > Could you share the first 10 to 20 lines of "packetfence-db-dump-2024-09-17_20h12.sql" > ? > > It should not contain sensitive information. > > > It looks like there is something on the beginning of the file that made > this > https://github.com/inverse-inc/packetfence/blob/devel/addons/functions/database.functions#L79 > failing. > > > You should be able to extract it from the 13.2 VM with the following > command line `gunzip /root/backup/packetfence-db-dump-2024-09-17_20h12.sql > .gz` > > > Thank you for your time and patience. > > Regards > > *Jeremy Goimard* > *Senior Software Engineer* > [image: signature_117474225] > *Office:* +1 613 670 8438 > Akamai Technologies - Inverse > 145 Broadway > Cambridge, MA 02142 > Connect with Us: > [image: signature_1388875202] <https://community.akamai.com/> [image: > signature_3364560605] <http://blogs.akamai.com/> [image: > signature_2499095976] <https://twitter.com/akamai> [image: > signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [image: > signature_4082763092] > <http://www.linkedin.com/company/akamai-technologies> [image: > signature_1928680685] > <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > > ------------------------------ > *From:* Arun Kangle <ak...@gm...> > *Sent:* Tuesday, September 17, 2024 11:56:38 AM > *To:* Goimard, Jeremy > *Cc:* pac...@li... > *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 > > Now there is different error root@ packetfence: ~# > /usr/local/pf/addons/full-import/import. sh -f /tmp/export. tgz /tmp/tmp. > 5ivIKXyBON ~ > ================================================================================= > Extracting archive. . . Found > ZjQcmQRYFpfptBannerStart > This Message Is From an Untrusted Sender > You have not previously corresponded with this sender. > > ZjQcmQRYFpfptBannerEnd > Now there is different error > > root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f > /tmp/export.tgz > /tmp/tmp.5ivIKXyBON ~ > > ================================================================================= > Extracting archive... > Found the following content in the archive: > total 345072 > -rw-r--r-- 1 root root 256 Sep 17 14:43 add_files.txt > -rw-r--r-- 1 root root 1175 Sep 17 14:43 grants.sql > -rw-r--r-- 1 root root 163588 Sep 17 14:42 > packetfence-db-dump-2024-09-17_20h12.sql.gz > -rw-r--r-- 1 root root 177166667 Sep 17 14:42 > packetfence-files-dump-2024-09-17_20h08.tgz > -rw-r--r-- 1 root root 1630 Sep 17 14:43 stored_config_files.txt > drwxr-xr-x 3 root root 4096 Sep 17 14:43 usr > > ================================================================================= > Found files dump 'packetfence-files-dump-2024-09-17_20h08.tgz' > Extracting files dump > > ================================================================================= > Found compressed database dump > 'packetfence-db-dump-2024-09-17_20h12.sql.gz' > Uncompressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql' > > ================================================================================= > Get PF version in PacketFence export > 13.2.0 > > ================================================================================= > Stopping PacketFence services > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > > ================================================================================= > The database dump uses mysqldump > > --------------------------------------------------------------------------------- > Recreating database pf > > --------------------------------------------------------------------------------- > Dump file was made without triggers and procedures > Importing bare schema for 13.2 > > --------------------------------------------------------------------------------- > Replacing create statements from the dump and removing drop statements > > --------------------------------------------------------------------------------- > Importing packetfence-db-dump-2024-09-17_20h12.sql into pf > ERROR at line 1: Unknown command '\-'. > Cleaning temporary directory > root@packetfence:~# > > On Tue, Sep 17, 2024 at 7:08 PM Goimard, Jeremy <jeg...@ak...> > wrote: > >> Hi Arum, >> >> >> Ok, Sorry I wasn't clear enough. >> >> >> The problem is on the db backup that has been created on 13.2.0. >> >> Please, apply maintenance patches on 13.2.0, not on 14.0.0. >> >> The doc is the same for both >> https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches >> >> that is why the previous link used 14.0.0 >> >> >> Sorry for the misdirection. >> >> >> Thank you >> >> Regards >> >> *Jeremy Goimard* >> *Senior Software Engineer* >> [image: signature_117474225] >> *Office:* +1 613 670 8438 >> Akamai Technologies - Inverse >> 145 Broadway >> Cambridge, MA 02142 >> Connect with Us: >> [image: signature_1388875202] <https://community.akamai.com/> [image: >> signature_3364560605] <http://blogs.akamai.com/> [image: >> signature_2499095976] >> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn8LlgQug$> >> [image: signature_3425345268] >> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGnipb216g$> >> [image: signature_4082763092] >> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn13__cHA$> >> [image: signature_1928680685] >> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGl2ukdMoQ$> >> >> >> >> ------------------------------ >> *From:* Arun Kangle <ak...@gm...> >> *Sent:* Tuesday, September 17, 2024 9:26 AM >> *To:* Goimard, Jeremy >> *Cc:* pac...@li... >> *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 >> >> Hi Jeremy, I tried the steps given to apply maintenance patch but still >> facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd >> service pf stop Synchronizing state of monit. service with SysV service >> script with /lib/systemd/systemd-sysv-install. >> ZjQcmQRYFpfptBannerStart >> This Message Is From an Untrusted Sender >> You have not previously corresponded with this sender. >> >> ZjQcmQRYFpfptBannerEnd >> Hi Jeremy, >> I tried the steps given to apply maintenance patch but still facing the >> same error: >> >> root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> Service Status PID >> packetfence-api-frontend.service stopped 0 >> packetfence-config.service started 0 >> packetfence-docker-iptables.service disabled 0 >> packetfence-fingerbank-collector.service disabled 0 >> packetfence-galera-autofix.service disabled 0 >> packetfence-haproxy-admin.service stopped 0 >> packetfence-haproxy-db.service disabled 0 >> packetfence-haproxy-portal.service stopped 0 >> packetfence-httpd.aaa.service stopped 0 >> packetfence-httpd.admin_dispatcher.service stopped 0 >> packetfence-httpd.dispatcher.service stopped 0 >> packetfence-httpd.portal.service stopped 0 >> packetfence-httpd.webservices.service stopped 0 >> packetfence-ip6tables.service stopped 0 >> packetfence-iptables.service stopped 0 >> packetfence-kafka.service disabled 0 >> packetfence-keepalived.service stopped 0 >> packetfence-mariadb.service started 1138 >> packetfence-mysql-probe.service disabled 0 >> packetfence-netdata.service stopped 0 >> packetfence-ntlm-auth-api.service disabled 0 >> packetfence-pfacct.service stopped 0 >> packetfence-pfconnector-client.service stopped 0 >> packetfence-pfconnector-server.service stopped 0 >> packetfence-pfcron.service stopped 0 >> packetfence-pfdetect.service disabled 0 >> packetfence-pfdhcp.service stopped 0 >> packetfence-pfdhcplistener.service stopped 0 >> packetfence-pfdns.service stopped 0 >> packetfence-pffilter.service stopped 0 >> packetfence-pfipset.service stopped 0 >> packetfence-pfldapexplorer.service stopped 0 >> packetfence-pfperl-api.service stopped 0 >> packetfence-pfpki.service stopped 0 >> packetfence-pfqueue-backend.service stopped 0 >> packetfence-pfqueue-go.service stopped 0 >> packetfence-pfqueue-perl.service disabled 0 >> packetfence-pfsetacls.service stopped 0 >> packetfence-pfsso.service stopped 0 >> packetfence-pfstats.service stopped 0 >> packetfence-proxysql.service disabled 0 >> packetfence-radiusd-acct.service disabled 0 >> packetfence-radiusd-auth.service stopped 0 >> packetfence-radiusd-cli.service disabled 0 >> packetfence-radiusd-eduroam.service disabled 0 >> packetfence-radiusd-load_balancer.service disabled 0 >> packetfence-radsniff.service stopped 0 >> packetfence-redis-cache.service started 997 >> packetfence-redis_ntlm_cache.service disabled 0 >> packetfence-redis_queue.service stopped 0 >> packetfence-snmptrapd.service disabled 0 >> packetfence-tracking-config.service disabled 1 >> root@packetfence:~# systemctl stop packetfence-config >> >> root@packetfence:~# apt update >> Hit:1 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> >> bookworm-security InRelease >> Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm >> InRelease >> Hit:3 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> >> bookworm InRelease >> Hit:4 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> >> bookworm-updates InRelease >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> 10 packages can be upgraded. Run 'apt list --upgradable' to see them. >> W: >> http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: >> Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the >> DEPRECATION section in apt-key(8) for details. >> root@packetfence:~# >> root@packetfence:~# apt upgrade >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> Calculating upgrade... Done >> Some packages could not be installed. This may mean that you have >> requested an impossible situation or if you are using the unstable >> distribution that some required packages have not yet been created >> or been moved out of Incoming. >> The following information may help to resolve the situation: >> >> The following packages have unmet dependencies: >> netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed >> E: Broken packages >> >> root@packetfence:~# apt-mark hold netdata >> netdata set on hold. >> root@packetfence:~# apt upgrade >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> Calculating upgrade... Done >> The following packages have been kept back: >> netdata packetfence >> The following packages will be upgraded: >> git git-man packetfence-archive-keyring packetfence-config >> packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid >> packetfence-redis-cache >> 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. >> Need to get 54.4 MB of archives. >> After this operation, 428 kB of additional disk space will be used. >> Do you want to continue? [Y/n] y >> Get:1 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> >> bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] >> Get:2 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> >> bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] >> Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-archive-keyring all >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] >> Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-config all >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] >> Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-golang-daemon amd64 >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] >> Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] >> Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] >> Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-redis-cache all >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] >> Fetched 54.4 MB in 13s (4,027 kB/s) >> Reading changelogs... Done >> (Reading database ... 124611 files and directories currently installed.) >> Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... >> Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... >> Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... >> Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... >> Preparing to unpack >> .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb >> ... >> Unpacking packetfence-archive-keyring >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb >> ... >> Unpacking packetfence-config >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb >> ... >> Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 >> Unpacking packetfence-golang-daemon >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb >> ... >> Unpacking packetfence-ntlm-wrapper >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb >> ... >> Unpacking packetfence-pfcmd-suid >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb >> ... >> Unpacking packetfence-redis-cache >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Setting up packetfence-redis-cache >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Synchronizing state of redis-server.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable redis-server >> Setting up packetfence-pfcmd-suid >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Setting up packetfence-config >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> pfconfig.conf already exists, won't touch it! >> Setting up packetfence-ntlm-wrapper >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Setting up packetfence-archive-keyring >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Setting up packetfence-golang-daemon >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Setting up git-man (1:2.39.5-0+deb12u1) ... >> Setting up git (1:2.39.5-0+deb12u1) ... >> Processing triggers for man-db (2.11.2-2) ... >> root@packetfence:~# >> root@packetfence:~# >> root@packetfence:~# >> root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f >> /tmp/export.tgz >> /tmp/tmp.DZrE5kSBrD ~ >> >> ================================================================================= >> Extracting archive... >> Found the following content in the archive: >> total 344604 >> -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt >> -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql >> -rw-r--r-- 1 root root 113315 Sep 17 05:13 >> packetfence-db-dump-2024-09-17_10h43.sql.gz >> -rw-r--r-- 1 root root 176971909 Sep 17 05:13 >> packetfence-files-dump-2024-09-17_10h43.tgz >> -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt >> drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr >> >> ================================================================================= >> Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' >> Extracting files dump >> >> ================================================================================= >> Found compressed database dump >> 'packetfence-db-dump-2024-09-17_10h43.sql.gz' >> Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' >> >> ================================================================================= >> Get PF version in PacketFence export >> 13.2.0 >> >> ================================================================================= >> Stopping PacketFence services >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> >> ================================================================================= >> The database dump uses mysqldump >> >> --------------------------------------------------------------------------------- >> Recreating database pf >> >> --------------------------------------------------------------------------------- >> Dump file was made without triggers and procedures >> Importing bare schema for 13.2 >> >> --------------------------------------------------------------------------------- >> Replacing create statements from the dump and removing drop statements >> >> --------------------------------------------------------------------------------- >> Importing packetfence-db-dump-2024-09-17_10h43.sql into pf >> ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' >> Cleaning temporary directory >> root@packetfence:~# >> >> On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...> >> wrote: >> >>> Hi Arum, >>> >>> >>> Please continue to use the sourceforge list. >>> >>> No private help if you are not a client. >>> >>> >>> That been wrote, you need to apply maintenance patches first ( >>> https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due >>> to that https://github.com/inverse-inc/packetfence/issues/8105 >>> <https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which >>> as been fixed. >>> >>> >>> Thanks >>> >>> Regards. >>> >>> *Jeremy Goimard* >>> *Senior Software Engineer* >>> [image: signature_117474225] >>> *Office:* +1 613 670 8438 >>> Akamai Technologies - Inverse >>> 145 Broadway >>> Cambridge, MA 02142 >>> Connect with Us: >>> [image: signature_1388875202] <https://community.akamai.com/> [image: >>> signature_3364560605] <http://blogs.akamai.com/> [image: >>> signature_2499095976] >>> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> >>> [image: signature_3425345268] >>> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> >>> [image: signature_4082763092] >>> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> >>> [image: signature_1928680685] >>> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> >>> >>> ------------------------------ >>> *From:* Arun Kangle <ak...@gm...> >>> *Sent:* Tuesday, September 17, 2024 2:20:18 AM >>> *To:* Goimard, Jeremy >>> *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 >>> >>> Thanks for reply Jeremy, I tried to export / import but getting the >>> following error. Could you please help me? I am using 14. 0 Zen. I did not >>> go through the configurator. After the first boot, I just edited the >>> "interfaces" file to >>> ZjQcmQRYFpfptBannerStart >>> This Message Is From an Untrusted Sender >>> You have not previously corresponded with this sender. >>> >>> ZjQcmQRYFpfptBannerEnd >>> Thanks for reply Jeremy, >>> I tried to export / import but getting the following error. Could you >>> please help me? >>> >>> I am using 14.0 Zen. I did not go through the configurator. After the >>> first boot, I just edited the "interfaces" file to add the IP address and >>> copied the export.tdz from the source. >>> >>> root@packetfence:/usr/local/pf/conf# >>> /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz >>> /tmp/tmp.VG977Nk5tp /usr/local/pf/conf >>> >>> ================================================================================= >>> Extracting archive... >>> Found the following content in the archive: >>> total 344604 >>> -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt >>> -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql >>> -rw-r--r-- 1 root root 113315 Sep 17 05:13 >>> packetfence-db-dump-2024-09-17_10h43.sql.gz >>> -rw-r--r-- 1 root root 176971909 Sep 17 05:13 >>> packetfence-files-dump-2024-09-17_10h43.tgz >>> -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt >>> drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr >>> >>> ================================================================================= >>> Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' >>> Extracting files dump >>> >>> ================================================================================= >>> Found compressed database dump >>> 'packetfence-db-dump-2024-09-17_10h43.sql.gz' >>> Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' >>> >>> ================================================================================= >>> Get PF version in PacketFence export >>> 13.2.0 >>> >>> ================================================================================= >>> Stopping PacketFence services >>> Synchronizing state of monit.service with SysV service script with >>> /lib/systemd/systemd-sysv-install. >>> Executing: /lib/systemd/systemd-sysv-install disable monit >>> >>> ================================================================================= >>> The database dump uses mysqldump >>> >>> --------------------------------------------------------------------------------- >>> Recreating database pf >>> >>> --------------------------------------------------------------------------------- >>> Dump file was made without triggers and procedures >>> Importing bare schema for 13.2 >>> >>> --------------------------------------------------------------------------------- >>> Replacing create statements from the dump and removing drop statements >>> >>> --------------------------------------------------------------------------------- >>> Importing packetfence-db-dump-2024-09-17_10h43.sql into pf >>> ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' >>> Cleaning temporary directory >>> >>> Thanks, >>> - Arun >>> >>> On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...> >>> wrote: >>> >>>> Hi Arun, >>>> >>>> >>>> As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not >>>> Debian 11. >>>> >>>> >>>> So, the upgrade script as is is not working. You will need to >>>> export/import in a new VM. >>>> >>>> >>>> I am currently updating our documentation. >>>> >>>> >>>> Thanks for reporting it and using PacketFence >>>> >>>> Regards >>>> >>>> >>>> *Jeremy Goimard* >>>> *Senior Software Engineer* >>>> [image: signature_117474225] >>>> *Office:* +1 613 670 8438 >>>> Akamai Technologies - Inverse >>>> 145 Broadway >>>> Cambridge, MA 02142 >>>> Connect with Us: >>>> [image: signature_1388875202] <https://community.akamai.com/> [image: >>>> signature_3364560605] <http://blogs.akamai.com/> [image: >>>> signature_2499095976] >>>> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> >>>> [image: signature_3425345268] >>>> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> >>>> [image: signature_4082763092] >>>> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> >>>> [image: signature_1928680685] >>>> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> >>>> >>>> ------------------------------ >>>> *From:* Arun Kangle via PacketFence-users < >>>> pac...@li...> >>>> *Sent:* Monday, September 16, 2024 11:09:39 AM >>>> *To:* pac...@li... >>>> *Cc:* Arun Kangle >>>> *Subject:* [PacketFence-users] Unable to upgrade to 14.0 >>>> >>>> Hi All, Currently I am running 13. 2. 0 version when i run >>>> "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise >>>> the latest version automatically and when i entered 14. 0 manually that too >>>> fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh >>>> ZjQcmQRYFpfptBannerStart >>>> This Message Is From an External Sender >>>> This message came from outside your organization. >>>> >>>> ZjQcmQRYFpfptBannerEnd >>>> Hi All, >>>> Currently I am running 13.2.0 version when i run >>>> "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the >>>> latest version automatically and when i entered 14.0 manually that too >>>> fails. >>>> >>>> root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh >>>> >>>> ================================================================================= >>>> Installing or upgrading the upgrade tools for PacketFence >>>> Hit:1 http://deb.debian.org/debian >>>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>>> bullseye InRelease >>>> Hit:2 http://deb.debian.org/debian >>>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>>> bullseye-updates InRelease >>>> Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye >>>> InRelease >>>> Hit:4 http://security.debian.org/debian-security >>>> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >>>> bullseye-security InRelease >>>> Reading package lists... Done >>>> Building dependency tree... Done >>>> Reading state information... Done >>>> 88 packages can be upgraded. Run 'apt list --upgradable' to see them. >>>> Reading package lists... Done >>>> Building dependency tree... Done >>>> Reading state information... Done >>>> packetfence-upgrade is already the newest version >>>> (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). >>>> The following packages were automatically installed and are no longer >>>> required: >>>> libgnutls-dane0 libunbound8 >>>> Use 'apt autoremove' to remove them. >>>> 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. >>>> >>>> ================================================================================= >>>> Starting upgrade process >>>> >>>> ================================================================================= >>>> Attempting to disable the monit service so it doesn't interfere with >>>> the upgrade >>>> Synchronizing state of monit.service with SysV service script with >>>> /lib/systemd/systemd-sysv-install. >>>> Executing: /lib/systemd/systemd-sysv-install disable monit >>>> Attempting to stop the monit service so it doesn't interfere with the >>>> upgrade >>>> >>>> --------------------------------------------------------------------------------- >>>> Stopping the PacketFence services >>>> Synchronizing state of monit.service with SysV service script with >>>> /lib/systemd/systemd-sysv-install. >>>> Executing: /lib/systemd/systemd-sysv-install disable monit >>>> Service Status PID >>>> packetfence-api-frontend.service stopped 0 >>>> packetfence-config.service started 0 >>>> packetfence-docker-iptables.service disabled 0 >>>> packetfence-fingerbank-collector.service disabled 0 >>>> packetfence-galera-autofix.service disabled 0 >>>> packetfence-haproxy-admin.service stopped 0 >>>> packetfence-haproxy-db.service disabled 0 >>>> packetfence-haproxy-portal.service stopped 0 >>>> packetfence-httpd.aaa.service stopped 0 >>>> packetfence-httpd.admin_dispatcher.service stopped 0 >>>> packetfence-httpd.dispatcher.service stopped 0 >>>> packetfence-httpd.portal.service stopped 0 >>>> packetfence-httpd.webservices.service stopped 0 >>>> packetfence-ip6tables.service stopped 0 >>>> packetfence-iptables.service stopped 0 >>>> packetfence-kafka.service disabled 0 >>>> packetfence-keepalived.service stopped 0 >>>> packetfence-mariadb.service started 1992 >>>> packetfence-mysql-probe.service disabled 0 >>>> packetfence-netdata.service stopped 0 >>>> packetfence-ntlm-auth-api.service disabled 0 >>>> packetfence-pfacct.service stopped 0 >>>> packetfence-pfconnector-client.service stopped 0 >>>> packetfence-pfconnector-server.service stopped 0 >>>> packetfence-pfcron.service stopped 0 >>>> packetfence-pfdetect.service disabled 0 >>>> packetfence-pfdhcp.service stopped 0 >>>> packetfence-pfdhcplistener.service stopped 0 >>>> packetfence-pfdns.service stopped 0 >>>> packetfence-pffilter.service stopped 0 >>>> packetfence-pfipset.service stopped 0 >>>> packetfence-pfldapexplorer.service stopped 0 >>>> packetfence-pfperl-api.service stopped 0 >>>> packetfence-pfpki.service stopped 0 >>>> packetfence-pfqueue-backend.service stopped 0 >>>> packetfence-pfqueue-go.service stopped 0 >>>> packetfence-pfqueue-perl.service disabled 0 >>>> packetfence-pfsetacls.service stopped 0 >>>> packetfence-pfsso.service stopped 0 >>>> packetfence-pfstats.service stopped 0 >>>> packetfence-proxysql.service disabled 0 >>>> packetfence-radiusd-acct.service disabled 0 >>>> packetfence-radiusd-auth.service stopped 0 >>>> packetfence-radiusd-cli.service disabled 0 >>>> packetfence-radiusd-eduroam.service disabled 0 >>>> packetfence-radiusd-load_balancer.service disabled 0 >>>> packetfence-radsniff.service stopped 0 >>>> packetfence-redis-cache.service started 1817 >>>> packetfence-redis_ntlm_cache.service disabled 0 >>>> packetfence-redis_queue.service stopped 0 >>>> packetfence-snmptrapd.service disabled 0 >>>> packetfence-tracking-config.service disabled 1 >>>> >>>> ================================================================================= >>>> Generating full pre-upgrade backup to >>>> /root/packetfence-pre-upgrade-backup-1726498856.tgz >>>> /root/backup/ , folder already created. >>>> >>>> packetfence-files-dump have been created in /root/backup/ >>>> >>>> packetfence-files-dump older than 7 days have been removed. >>>> >>>> Database backup will start >>>> Not a Galera cluster, nothing to stop >>>> mysqldump completed >>>> Not a Galera cluster, nothing to reenable >>>> /tmp/tmp.MfRZFp07Eq /usr/local/pf >>>> >>>> ================================================================================= >>>> Copying dump files to temporary export directory >>>> Database dump uses mysqldump. Exporting the grants from the database. >>>> Enter the MariaDB root password if prompted to >>>> >>>> ================================================================================= >>>> Building list of configuration files for this current version >>>> >>>> ================================================================================= >>>> Computing additional files that are referenced in the configuration >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/admin.conf) >>>> Found reference to external file that is outside the PF directory >>>> (/usr/local/fingerbank/conf/fingerbank.conf) >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/iptables-input.conf.inc) >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/iptables-input-management.conf.inc) >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/ip6tables-input-management.conf.inc) >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/report.conf) >>>> >>>> ================================================================================= >>>> Creating export archive >>>> add_files.txt >>>> grants.sql >>>> packetfence-db-dump-2024-09-16_20h32.sql.gz >>>> packetfence-files-dump-2024-09-16_20h30.tgz >>>> stored_config_files.txt >>>> usr/ >>>> usr/local/ >>>> usr/local/fingerbank/ >>>> usr/local/fingerbank/conf/ >>>> usr/local/fingerbank/conf/fingerbank.conf >>>> >>>> ================================================================================= >>>> Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz >>>> Cleaning temporary directory >>>> >>>> ================================================================================= >>>> Do you wish to perform the update of the operating system to the latest >>>> available patches during that process? (y/n): y >>>> >>>> ================================================================================= >>>> Backing up git_commit_id >>>> Backing up pf-release >>>> >>>> ================================================================================= >>>> Performing upgrade of the packages >>>> Unable to detect packages to remove >>>> dpkg-query: no packages found matching libmariadb-dev >>>> Unable to detect a libmariadb-dev package, upgrade will continue >>>> % Total % Received % Xferd Average Speed Time Time Time >>>> Current >>>> Dload Upload Total Spent Left >>>> Speed >>>> 100 5 100 5 0 0 2 0 0:00:02 0:00:01 >>>> 0:00:01 2 >>>> The latest stable PacketFence version is 13.2, enter 'y' to upgrade to >>>> this version or 'n' to specify the version manually (y/n): n >>>> Please enter the PacketFence version to which you wish to upgrade: 14.0 >>>> Hit:1 http://security.debian.org/debian-security >>>> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >>>> bullseye-security InRelease >>>> Hit:2 http://deb.debian.org/debian >>>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>>> bullseye InRelease >>>> Hit:3 http://deb.debian.org/debian >>>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>>> bullseye-updates InRelease >>>> Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >>>> InRelease >>>> Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >>>> Release >>>> 404 Not Found [IP: 192.95.20.194 80] >>>> Reading package lists... Done >>>> E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 >>>> bullseye Release' does not have a Release file. >>>> N: Updating from such a repository can't be done securely, and is >>>> therefore disabled by default. >>>> N: See apt-secure(8) manpage for repository creation and user >>>> configuration details. >>>> root@guestpf:/# >>>> >>>> Am I missing anything? >>>> Thanks in advance, >>>> - Arun >>>> >>> |
From: Goimard, J. <jeg...@ak...> - 2024-09-17 16:29:58
|
Hi Arum, OK, that is a new one... Never seen that before. Could you share the first 10 to 20 lines of "packetfence-db-dump-2024-09-17_20h12.sql" ? It should not contain sensitive information. It looks like there is something on the beginning of the file that made this https://github.com/inverse-inc/packetfence/blob/devel/addons/functions/database.functions#L79 failing. You should be able to extract it from the 13.2 VM with the following command line `gunzip /root/backup/packetfence-db-dump-2024-09-17_20h12.sql.gz` Thank you for your time and patience. Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle <ak...@gm...> Sent: Tuesday, September 17, 2024 11:56:38 AM To: Goimard, Jeremy Cc: pac...@li... Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Now there is different error root@ packetfence: ~# /usr/local/pf/addons/full-import/import. sh -f /tmp/export. tgz /tmp/tmp. 5ivIKXyBON ~ ================================================================================= Extracting archive. . . Found ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Now there is different error root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.5ivIKXyBON ~ ================================================================================= Extracting archive... Found the following content in the archive: total 345072 -rw-r--r-- 1 root root 256 Sep 17 14:43 add_files.txt -rw-r--r-- 1 root root 1175 Sep 17 14:43 grants.sql -rw-r--r-- 1 root root 163588 Sep 17 14:42 packetfence-db-dump-2024-09-17_20h12.sql.gz -rw-r--r-- 1 root root 177166667 Sep 17 14:42 packetfence-files-dump-2024-09-17_20h08.tgz -rw-r--r-- 1 root root 1630 Sep 17 14:43 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 14:43 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_20h08.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_20h12.sql into pf ERROR at line 1: Unknown command '\-'. Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 7:08 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Ok, Sorry I wasn't clear enough. The problem is on the db backup that has been created on 13.2.0. Please, apply maintenance patches on 13.2.0, not on 14.0.0. The doc is the same for both https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches that is why the previous link used 14.0.0 Sorry for the misdirection. Thank you Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn8LlgQug$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGnipb216g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn13__cHA$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGl2ukdMoQ$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 9:26 AM To: Goimard, Jeremy Cc: pac...@li...<mailto:pac...@li...> Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit. service with SysV service script with /lib/systemd/systemd-sysv-install. ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1138 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 997 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 root@packetfence:~# systemctl stop packetfence-config root@packetfence:~# apt update Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security InRelease Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm InRelease Hit:4 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm-updates InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 10 packages can be upgraded. Run 'apt list --upgradable' to see them. W: http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the DEPRECATION section in apt-key(8) for details. root@packetfence:~# root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done Some packages could not be installed. This may mean that you have requested an impossible situation or if you are using the unstable distribution that some required packages have not yet been created or been moved out of Incoming. The following information may help to resolve the situation: The following packages have unmet dependencies: netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed E: Broken packages root@packetfence:~# apt-mark hold netdata netdata set on hold. root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done The following packages have been kept back: netdata packetfence The following packages will be upgraded: git git-man packetfence-archive-keyring packetfence-config packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid packetfence-redis-cache 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. Need to get 54.4 MB of archives. After this operation, 428 kB of additional disk space will be used. Do you want to continue? [Y/n] y Get:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] Get:2 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-archive-keyring all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-config all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-golang-daemon amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-redis-cache all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] Fetched 54.4 MB in 13s (4,027 kB/s) Reading changelogs... Done (Reading database ... 124611 files and directories currently installed.) Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 Unpacking packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Setting up packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Synchronizing state of redis-server.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable redis-server Setting up packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... pfconfig.conf already exists, won't touch it! Setting up packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up git-man (1:2.39.5-0+deb12u1) ... Setting up git (1:2.39.5-0+deb12u1) ... Processing triggers for man-db (2.11.2-2) ... root@packetfence:~# root@packetfence:~# root@packetfence:~# root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.DZrE5kSBrD ~ ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Please continue to use the sourceforge list. No private help if you are not a client. That been wrote, you need to apply maintenance patches first (https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due to that https://github.com/inverse-inc/packetfence/issues/8105<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which as been fixed. Thanks Regards. Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 2:20:18 AM To: Goimard, Jeremy Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14. 0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14.0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to add the IP address and copied the export.tdz from the source. root@packetfence:/usr/local/pf/conf# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.VG977Nk5tp /usr/local/pf/conf ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory Thanks, - Arun On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li...<mailto:pac...@li...> Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Arun K. <ak...@gm...> - 2024-09-17 15:57:01
|
Now there is different error root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.5ivIKXyBON ~ ================================================================================= Extracting archive... Found the following content in the archive: total 345072 -rw-r--r-- 1 root root 256 Sep 17 14:43 add_files.txt -rw-r--r-- 1 root root 1175 Sep 17 14:43 grants.sql -rw-r--r-- 1 root root 163588 Sep 17 14:42 packetfence-db-dump-2024-09-17_20h12.sql.gz -rw-r--r-- 1 root root 177166667 Sep 17 14:42 packetfence-files-dump-2024-09-17_20h08.tgz -rw-r--r-- 1 root root 1630 Sep 17 14:43 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 14:43 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_20h08.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_20h12.sql into pf ERROR at line 1: Unknown command '\-'. Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 7:08 PM Goimard, Jeremy <jeg...@ak...> wrote: > Hi Arum, > > > Ok, Sorry I wasn't clear enough. > > > The problem is on the db backup that has been created on 13.2.0. > > Please, apply maintenance patches on 13.2.0, not on 14.0.0. > > The doc is the same for both > https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches > > that is why the previous link used 14.0.0 > > > Sorry for the misdirection. > > > Thank you > > Regards > > *Jeremy Goimard* > *Senior Software Engineer* > [image: signature_117474225] > *Office:* +1 613 670 8438 > Akamai Technologies - Inverse > 145 Broadway > Cambridge, MA 02142 > Connect with Us: > [image: signature_1388875202] <https://community.akamai.com/> [image: > signature_3364560605] <http://blogs.akamai.com/> [image: > signature_2499095976] <https://twitter.com/akamai> [image: > signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [image: > signature_4082763092] > <http://www.linkedin.com/company/akamai-technologies> [image: > signature_1928680685] > <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > > > > ------------------------------ > *From:* Arun Kangle <ak...@gm...> > *Sent:* Tuesday, September 17, 2024 9:26 AM > *To:* Goimard, Jeremy > *Cc:* pac...@li... > *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 > > Hi Jeremy, I tried the steps given to apply maintenance patch but still > facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd > service pf stop Synchronizing state of monit. service with SysV service > script with /lib/systemd/systemd-sysv-install. > ZjQcmQRYFpfptBannerStart > This Message Is From an Untrusted Sender > You have not previously corresponded with this sender. > > ZjQcmQRYFpfptBannerEnd > Hi Jeremy, > I tried the steps given to apply maintenance patch but still facing the > same error: > > root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > Service Status PID > packetfence-api-frontend.service stopped 0 > packetfence-config.service started 0 > packetfence-docker-iptables.service disabled 0 > packetfence-fingerbank-collector.service disabled 0 > packetfence-galera-autofix.service disabled 0 > packetfence-haproxy-admin.service stopped 0 > packetfence-haproxy-db.service disabled 0 > packetfence-haproxy-portal.service stopped 0 > packetfence-httpd.aaa.service stopped 0 > packetfence-httpd.admin_dispatcher.service stopped 0 > packetfence-httpd.dispatcher.service stopped 0 > packetfence-httpd.portal.service stopped 0 > packetfence-httpd.webservices.service stopped 0 > packetfence-ip6tables.service stopped 0 > packetfence-iptables.service stopped 0 > packetfence-kafka.service disabled 0 > packetfence-keepalived.service stopped 0 > packetfence-mariadb.service started 1138 > packetfence-mysql-probe.service disabled 0 > packetfence-netdata.service stopped 0 > packetfence-ntlm-auth-api.service disabled 0 > packetfence-pfacct.service stopped 0 > packetfence-pfconnector-client.service stopped 0 > packetfence-pfconnector-server.service stopped 0 > packetfence-pfcron.service stopped 0 > packetfence-pfdetect.service disabled 0 > packetfence-pfdhcp.service stopped 0 > packetfence-pfdhcplistener.service stopped 0 > packetfence-pfdns.service stopped 0 > packetfence-pffilter.service stopped 0 > packetfence-pfipset.service stopped 0 > packetfence-pfldapexplorer.service stopped 0 > packetfence-pfperl-api.service stopped 0 > packetfence-pfpki.service stopped 0 > packetfence-pfqueue-backend.service stopped 0 > packetfence-pfqueue-go.service stopped 0 > packetfence-pfqueue-perl.service disabled 0 > packetfence-pfsetacls.service stopped 0 > packetfence-pfsso.service stopped 0 > packetfence-pfstats.service stopped 0 > packetfence-proxysql.service disabled 0 > packetfence-radiusd-acct.service disabled 0 > packetfence-radiusd-auth.service stopped 0 > packetfence-radiusd-cli.service disabled 0 > packetfence-radiusd-eduroam.service disabled 0 > packetfence-radiusd-load_balancer.service disabled 0 > packetfence-radsniff.service stopped 0 > packetfence-redis-cache.service started 997 > packetfence-redis_ntlm_cache.service disabled 0 > packetfence-redis_queue.service stopped 0 > packetfence-snmptrapd.service disabled 0 > packetfence-tracking-config.service disabled 1 > root@packetfence:~# systemctl stop packetfence-config > > root@packetfence:~# apt update > Hit:1 http://security.debian.org/debian-security > <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> > bookworm-security InRelease > Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm > InRelease > Hit:3 http://deb.debian.org/debian > <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> > bookworm InRelease > Hit:4 http://deb.debian.org/debian > <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> > bookworm-updates InRelease > Reading package lists... Done > Building dependency tree... Done > Reading state information... Done > 10 packages can be upgraded. Run 'apt list --upgradable' to see them. > W: > http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: > Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the > DEPRECATION section in apt-key(8) for details. > root@packetfence:~# > root@packetfence:~# apt upgrade > Reading package lists... Done > Building dependency tree... Done > Reading state information... Done > Calculating upgrade... Done > Some packages could not be installed. This may mean that you have > requested an impossible situation or if you are using the unstable > distribution that some required packages have not yet been created > or been moved out of Incoming. > The following information may help to resolve the situation: > > The following packages have unmet dependencies: > netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed > E: Broken packages > > root@packetfence:~# apt-mark hold netdata > netdata set on hold. > root@packetfence:~# apt upgrade > Reading package lists... Done > Building dependency tree... Done > Reading state information... Done > Calculating upgrade... Done > The following packages have been kept back: > netdata packetfence > The following packages will be upgraded: > git git-man packetfence-archive-keyring packetfence-config > packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid > packetfence-redis-cache > 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. > Need to get 54.4 MB of archives. > After this operation, 428 kB of additional disk space will be used. > Do you want to continue? [Y/n] y > Get:1 http://security.debian.org/debian-security > <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> > bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] > Get:2 http://security.debian.org/debian-security > <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> > bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] > Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-archive-keyring all > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] > Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-config all > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] > Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-golang-daemon amd64 > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] > Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] > Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] > Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-redis-cache all > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] > Fetched 54.4 MB in 13s (4,027 kB/s) > Reading changelogs... Done > (Reading database ... 124611 files and directories currently installed.) > Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... > Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... > Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... > Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... > Preparing to unpack > .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb > ... > Unpacking packetfence-archive-keyring > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb > ... > Unpacking packetfence-config > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb > ... > Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 > Unpacking packetfence-golang-daemon > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb > ... > Unpacking packetfence-ntlm-wrapper > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb > ... > Unpacking packetfence-pfcmd-suid > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb > ... > Unpacking packetfence-redis-cache > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Setting up packetfence-redis-cache > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Synchronizing state of redis-server.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable redis-server > Setting up packetfence-pfcmd-suid > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Setting up packetfence-config > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > pfconfig.conf already exists, won't touch it! > Setting up packetfence-ntlm-wrapper > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Setting up packetfence-archive-keyring > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Setting up packetfence-golang-daemon > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Setting up git-man (1:2.39.5-0+deb12u1) ... > Setting up git (1:2.39.5-0+deb12u1) ... > Processing triggers for man-db (2.11.2-2) ... > root@packetfence:~# > root@packetfence:~# > root@packetfence:~# > root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f > /tmp/export.tgz > /tmp/tmp.DZrE5kSBrD ~ > > ================================================================================= > Extracting archive... > Found the following content in the archive: > total 344604 > -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt > -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql > -rw-r--r-- 1 root root 113315 Sep 17 05:13 > packetfence-db-dump-2024-09-17_10h43.sql.gz > -rw-r--r-- 1 root root 176971909 Sep 17 05:13 > packetfence-files-dump-2024-09-17_10h43.tgz > -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt > drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr > > ================================================================================= > Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' > Extracting files dump > > ================================================================================= > Found compressed database dump > 'packetfence-db-dump-2024-09-17_10h43.sql.gz' > Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' > > ================================================================================= > Get PF version in PacketFence export > 13.2.0 > > ================================================================================= > Stopping PacketFence services > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > > ================================================================================= > The database dump uses mysqldump > > --------------------------------------------------------------------------------- > Recreating database pf > > --------------------------------------------------------------------------------- > Dump file was made without triggers and procedures > Importing bare schema for 13.2 > > --------------------------------------------------------------------------------- > Replacing create statements from the dump and removing drop statements > > --------------------------------------------------------------------------------- > Importing packetfence-db-dump-2024-09-17_10h43.sql into pf > ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' > Cleaning temporary directory > root@packetfence:~# > > On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...> > wrote: > >> Hi Arum, >> >> >> Please continue to use the sourceforge list. >> >> No private help if you are not a client. >> >> >> That been wrote, you need to apply maintenance patches first ( >> https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due >> to that https://github.com/inverse-inc/packetfence/issues/8105 >> <https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which >> as been fixed. >> >> >> Thanks >> >> Regards. >> >> *Jeremy Goimard* >> *Senior Software Engineer* >> [image: signature_117474225] >> *Office:* +1 613 670 8438 >> Akamai Technologies - Inverse >> 145 Broadway >> Cambridge, MA 02142 >> Connect with Us: >> [image: signature_1388875202] <https://community.akamai.com/> [image: >> signature_3364560605] <http://blogs.akamai.com/> [image: >> signature_2499095976] >> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> >> [image: signature_3425345268] >> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> >> [image: signature_4082763092] >> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> >> [image: signature_1928680685] >> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> >> >> ------------------------------ >> *From:* Arun Kangle <ak...@gm...> >> *Sent:* Tuesday, September 17, 2024 2:20:18 AM >> *To:* Goimard, Jeremy >> *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 >> >> Thanks for reply Jeremy, I tried to export / import but getting the >> following error. Could you please help me? I am using 14. 0 Zen. I did not >> go through the configurator. After the first boot, I just edited the >> "interfaces" file to >> ZjQcmQRYFpfptBannerStart >> This Message Is From an Untrusted Sender >> You have not previously corresponded with this sender. >> >> ZjQcmQRYFpfptBannerEnd >> Thanks for reply Jeremy, >> I tried to export / import but getting the following error. Could you >> please help me? >> >> I am using 14.0 Zen. I did not go through the configurator. After the >> first boot, I just edited the "interfaces" file to add the IP address and >> copied the export.tdz from the source. >> >> root@packetfence:/usr/local/pf/conf# >> /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz >> /tmp/tmp.VG977Nk5tp /usr/local/pf/conf >> >> ================================================================================= >> Extracting archive... >> Found the following content in the archive: >> total 344604 >> -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt >> -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql >> -rw-r--r-- 1 root root 113315 Sep 17 05:13 >> packetfence-db-dump-2024-09-17_10h43.sql.gz >> -rw-r--r-- 1 root root 176971909 Sep 17 05:13 >> packetfence-files-dump-2024-09-17_10h43.tgz >> -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt >> drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr >> >> ================================================================================= >> Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' >> Extracting files dump >> >> ================================================================================= >> Found compressed database dump >> 'packetfence-db-dump-2024-09-17_10h43.sql.gz' >> Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' >> >> ================================================================================= >> Get PF version in PacketFence export >> 13.2.0 >> >> ================================================================================= >> Stopping PacketFence services >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> >> ================================================================================= >> The database dump uses mysqldump >> >> --------------------------------------------------------------------------------- >> Recreating database pf >> >> --------------------------------------------------------------------------------- >> Dump file was made without triggers and procedures >> Importing bare schema for 13.2 >> >> --------------------------------------------------------------------------------- >> Replacing create statements from the dump and removing drop statements >> >> --------------------------------------------------------------------------------- >> Importing packetfence-db-dump-2024-09-17_10h43.sql into pf >> ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' >> Cleaning temporary directory >> >> Thanks, >> - Arun >> >> On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...> >> wrote: >> >>> Hi Arun, >>> >>> >>> As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not >>> Debian 11. >>> >>> >>> So, the upgrade script as is is not working. You will need to >>> export/import in a new VM. >>> >>> >>> I am currently updating our documentation. >>> >>> >>> Thanks for reporting it and using PacketFence >>> >>> Regards >>> >>> >>> *Jeremy Goimard* >>> *Senior Software Engineer* >>> [image: signature_117474225] >>> *Office:* +1 613 670 8438 >>> Akamai Technologies - Inverse >>> 145 Broadway >>> Cambridge, MA 02142 >>> Connect with Us: >>> [image: signature_1388875202] <https://community.akamai.com/> [image: >>> signature_3364560605] <http://blogs.akamai.com/> [image: >>> signature_2499095976] >>> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> >>> [image: signature_3425345268] >>> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> >>> [image: signature_4082763092] >>> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> >>> [image: signature_1928680685] >>> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> >>> >>> ------------------------------ >>> *From:* Arun Kangle via PacketFence-users < >>> pac...@li...> >>> *Sent:* Monday, September 16, 2024 11:09:39 AM >>> *To:* pac...@li... >>> *Cc:* Arun Kangle >>> *Subject:* [PacketFence-users] Unable to upgrade to 14.0 >>> >>> Hi All, Currently I am running 13. 2. 0 version when i run >>> "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise >>> the latest version automatically and when i entered 14. 0 manually that too >>> fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh >>> ZjQcmQRYFpfptBannerStart >>> This Message Is From an External Sender >>> This message came from outside your organization. >>> >>> ZjQcmQRYFpfptBannerEnd >>> Hi All, >>> Currently I am running 13.2.0 version when i run >>> "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the >>> latest version automatically and when i entered 14.0 manually that too >>> fails. >>> >>> root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh >>> >>> ================================================================================= >>> Installing or upgrading the upgrade tools for PacketFence >>> Hit:1 http://deb.debian.org/debian >>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>> bullseye InRelease >>> Hit:2 http://deb.debian.org/debian >>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>> bullseye-updates InRelease >>> Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye >>> InRelease >>> Hit:4 http://security.debian.org/debian-security >>> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >>> bullseye-security InRelease >>> Reading package lists... Done >>> Building dependency tree... Done >>> Reading state information... Done >>> 88 packages can be upgraded. Run 'apt list --upgradable' to see them. >>> Reading package lists... Done >>> Building dependency tree... Done >>> Reading state information... Done >>> packetfence-upgrade is already the newest version >>> (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). >>> The following packages were automatically installed and are no longer >>> required: >>> libgnutls-dane0 libunbound8 >>> Use 'apt autoremove' to remove them. >>> 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. >>> >>> ================================================================================= >>> Starting upgrade process >>> >>> ================================================================================= >>> Attempting to disable the monit service so it doesn't interfere with the >>> upgrade >>> Synchronizing state of monit.service with SysV service script with >>> /lib/systemd/systemd-sysv-install. >>> Executing: /lib/systemd/systemd-sysv-install disable monit >>> Attempting to stop the monit service so it doesn't interfere with the >>> upgrade >>> >>> --------------------------------------------------------------------------------- >>> Stopping the PacketFence services >>> Synchronizing state of monit.service with SysV service script with >>> /lib/systemd/systemd-sysv-install. >>> Executing: /lib/systemd/systemd-sysv-install disable monit >>> Service Status PID >>> packetfence-api-frontend.service stopped 0 >>> packetfence-config.service started 0 >>> packetfence-docker-iptables.service disabled 0 >>> packetfence-fingerbank-collector.service disabled 0 >>> packetfence-galera-autofix.service disabled 0 >>> packetfence-haproxy-admin.service stopped 0 >>> packetfence-haproxy-db.service disabled 0 >>> packetfence-haproxy-portal.service stopped 0 >>> packetfence-httpd.aaa.service stopped 0 >>> packetfence-httpd.admin_dispatcher.service stopped 0 >>> packetfence-httpd.dispatcher.service stopped 0 >>> packetfence-httpd.portal.service stopped 0 >>> packetfence-httpd.webservices.service stopped 0 >>> packetfence-ip6tables.service stopped 0 >>> packetfence-iptables.service stopped 0 >>> packetfence-kafka.service disabled 0 >>> packetfence-keepalived.service stopped 0 >>> packetfence-mariadb.service started 1992 >>> packetfence-mysql-probe.service disabled 0 >>> packetfence-netdata.service stopped 0 >>> packetfence-ntlm-auth-api.service disabled 0 >>> packetfence-pfacct.service stopped 0 >>> packetfence-pfconnector-client.service stopped 0 >>> packetfence-pfconnector-server.service stopped 0 >>> packetfence-pfcron.service stopped 0 >>> packetfence-pfdetect.service disabled 0 >>> packetfence-pfdhcp.service stopped 0 >>> packetfence-pfdhcplistener.service stopped 0 >>> packetfence-pfdns.service stopped 0 >>> packetfence-pffilter.service stopped 0 >>> packetfence-pfipset.service stopped 0 >>> packetfence-pfldapexplorer.service stopped 0 >>> packetfence-pfperl-api.service stopped 0 >>> packetfence-pfpki.service stopped 0 >>> packetfence-pfqueue-backend.service stopped 0 >>> packetfence-pfqueue-go.service stopped 0 >>> packetfence-pfqueue-perl.service disabled 0 >>> packetfence-pfsetacls.service stopped 0 >>> packetfence-pfsso.service stopped 0 >>> packetfence-pfstats.service stopped 0 >>> packetfence-proxysql.service disabled 0 >>> packetfence-radiusd-acct.service disabled 0 >>> packetfence-radiusd-auth.service stopped 0 >>> packetfence-radiusd-cli.service disabled 0 >>> packetfence-radiusd-eduroam.service disabled 0 >>> packetfence-radiusd-load_balancer.service disabled 0 >>> packetfence-radsniff.service stopped 0 >>> packetfence-redis-cache.service started 1817 >>> packetfence-redis_ntlm_cache.service disabled 0 >>> packetfence-redis_queue.service stopped 0 >>> packetfence-snmptrapd.service disabled 0 >>> packetfence-tracking-config.service disabled 1 >>> >>> ================================================================================= >>> Generating full pre-upgrade backup to >>> /root/packetfence-pre-upgrade-backup-1726498856.tgz >>> /root/backup/ , folder already created. >>> >>> packetfence-files-dump have been created in /root/backup/ >>> >>> packetfence-files-dump older than 7 days have been removed. >>> >>> Database backup will start >>> Not a Galera cluster, nothing to stop >>> mysqldump completed >>> Not a Galera cluster, nothing to reenable >>> /tmp/tmp.MfRZFp07Eq /usr/local/pf >>> >>> ================================================================================= >>> Copying dump files to temporary export directory >>> Database dump uses mysqldump. Exporting the grants from the database. >>> Enter the MariaDB root password if prompted to >>> >>> ================================================================================= >>> Building list of configuration files for this current version >>> >>> ================================================================================= >>> Computing additional files that are referenced in the configuration >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/admin.conf) >>> Found reference to external file that is outside the PF directory >>> (/usr/local/fingerbank/conf/fingerbank.conf) >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/iptables-input.conf.inc) >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/iptables-input-management.conf.inc) >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/ip6tables-input-management.conf.inc) >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/report.conf) >>> >>> ================================================================================= >>> Creating export archive >>> add_files.txt >>> grants.sql >>> packetfence-db-dump-2024-09-16_20h32.sql.gz >>> packetfence-files-dump-2024-09-16_20h30.tgz >>> stored_config_files.txt >>> usr/ >>> usr/local/ >>> usr/local/fingerbank/ >>> usr/local/fingerbank/conf/ >>> usr/local/fingerbank/conf/fingerbank.conf >>> >>> ================================================================================= >>> Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz >>> Cleaning temporary directory >>> >>> ================================================================================= >>> Do you wish to perform the update of the operating system to the latest >>> available patches during that process? (y/n): y >>> >>> ================================================================================= >>> Backing up git_commit_id >>> Backing up pf-release >>> >>> ================================================================================= >>> Performing upgrade of the packages >>> Unable to detect packages to remove >>> dpkg-query: no packages found matching libmariadb-dev >>> Unable to detect a libmariadb-dev package, upgrade will continue >>> % Total % Received % Xferd Average Speed Time Time Time >>> Current >>> Dload Upload Total Spent Left >>> Speed >>> 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 >>> 2 >>> The latest stable PacketFence version is 13.2, enter 'y' to upgrade to >>> this version or 'n' to specify the version manually (y/n): n >>> Please enter the PacketFence version to which you wish to upgrade: 14.0 >>> Hit:1 http://security.debian.org/debian-security >>> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >>> bullseye-security InRelease >>> Hit:2 http://deb.debian.org/debian >>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>> bullseye InRelease >>> Hit:3 http://deb.debian.org/debian >>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>> bullseye-updates InRelease >>> Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >>> InRelease >>> Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >>> Release >>> 404 Not Found [IP: 192.95.20.194 80] >>> Reading package lists... Done >>> E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 >>> bullseye Release' does not have a Release file. >>> N: Updating from such a repository can't be done securely, and is >>> therefore disabled by default. >>> N: See apt-secure(8) manpage for repository creation and user >>> configuration details. >>> root@guestpf:/# >>> >>> Am I missing anything? >>> Thanks in advance, >>> - Arun >>> >> |
From: Goimard, J. <jeg...@ak...> - 2024-09-17 13:38:37
|
Hi Arum, Ok, Sorry I wasn't clear enough. The problem is on the db backup that has been created on 13.2.0. Please, apply maintenance patches on 13.2.0, not on 14.0.0. The doc is the same for both https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches that is why the previous link used 14.0.0 Sorry for the misdirection. Thank you Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle <ak...@gm...> Sent: Tuesday, September 17, 2024 9:26 AM To: Goimard, Jeremy Cc: pac...@li... Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit. service with SysV service script with /lib/systemd/systemd-sysv-install. ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1138 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 997 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 root@packetfence:~# systemctl stop packetfence-config root@packetfence:~# apt update Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security InRelease Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm InRelease Hit:4 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm-updates InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 10 packages can be upgraded. Run 'apt list --upgradable' to see them. W: http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the DEPRECATION section in apt-key(8) for details. root@packetfence:~# root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done Some packages could not be installed. This may mean that you have requested an impossible situation or if you are using the unstable distribution that some required packages have not yet been created or been moved out of Incoming. The following information may help to resolve the situation: The following packages have unmet dependencies: netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed E: Broken packages root@packetfence:~# apt-mark hold netdata netdata set on hold. root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done The following packages have been kept back: netdata packetfence The following packages will be upgraded: git git-man packetfence-archive-keyring packetfence-config packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid packetfence-redis-cache 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. Need to get 54.4 MB of archives. After this operation, 428 kB of additional disk space will be used. Do you want to continue? [Y/n] y Get:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] Get:2 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-archive-keyring all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-config all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-golang-daemon amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-redis-cache all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] Fetched 54.4 MB in 13s (4,027 kB/s) Reading changelogs... Done (Reading database ... 124611 files and directories currently installed.) Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 Unpacking packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Setting up packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Synchronizing state of redis-server.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable redis-server Setting up packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... pfconfig.conf already exists, won't touch it! Setting up packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up git-man (1:2.39.5-0+deb12u1) ... Setting up git (1:2.39.5-0+deb12u1) ... Processing triggers for man-db (2.11.2-2) ... root@packetfence:~# root@packetfence:~# root@packetfence:~# root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.DZrE5kSBrD ~ ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Please continue to use the sourceforge list. No private help if you are not a client. That been wrote, you need to apply maintenance patches first (https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due to that https://github.com/inverse-inc/packetfence/issues/8105<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which as been fixed. Thanks Regards. Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 2:20:18 AM To: Goimard, Jeremy Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14. 0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14.0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to add the IP address and copied the export.tdz from the source. root@packetfence:/usr/local/pf/conf# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.VG977Nk5tp /usr/local/pf/conf ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory Thanks, - Arun On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li...<mailto:pac...@li...> Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Arun K. <ak...@gm...> - 2024-09-17 13:26:46
|
Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1138 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 997 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 root@packetfence:~# systemctl stop packetfence-config root@packetfence:~# apt update Hit:1 http://security.debian.org/debian-security bookworm-security InRelease Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm InRelease Hit:3 http://deb.debian.org/debian bookworm InRelease Hit:4 http://deb.debian.org/debian bookworm-updates InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 10 packages can be upgraded. Run 'apt list --upgradable' to see them. W: http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the DEPRECATION section in apt-key(8) for details. root@packetfence:~# root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done Some packages could not be installed. This may mean that you have requested an impossible situation or if you are using the unstable distribution that some required packages have not yet been created or been moved out of Incoming. The following information may help to resolve the situation: The following packages have unmet dependencies: netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed E: Broken packages root@packetfence:~# apt-mark hold netdata netdata set on hold. root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done The following packages have been kept back: netdata packetfence The following packages will be upgraded: git git-man packetfence-archive-keyring packetfence-config packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid packetfence-redis-cache 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. Need to get 54.4 MB of archives. After this operation, 428 kB of additional disk space will be used. Do you want to continue? [Y/n] y Get:1 http://security.debian.org/debian-security bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] Get:2 http://security.debian.org/debian-security bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-archive-keyring all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-config all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-golang-daemon amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-redis-cache all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] Fetched 54.4 MB in 13s (4,027 kB/s) Reading changelogs... Done (Reading database ... 124611 files and directories currently installed.) Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 Unpacking packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Setting up packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Synchronizing state of redis-server.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable redis-server Setting up packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... pfconfig.conf already exists, won't touch it! Setting up packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up git-man (1:2.39.5-0+deb12u1) ... Setting up git (1:2.39.5-0+deb12u1) ... Processing triggers for man-db (2.11.2-2) ... root@packetfence:~# root@packetfence:~# root@packetfence:~# root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.DZrE5kSBrD ~ ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...> wrote: > Hi Arum, > > > Please continue to use the sourceforge list. > > No private help if you are not a client. > > > That been wrote, you need to apply maintenance patches first ( > https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due > to that https://github.com/inverse-inc/packetfence/issues/8105 which as > been fixed. > > > Thanks > > Regards. > > *Jeremy Goimard* > *Senior Software Engineer* > [image: signature_117474225] > *Office:* +1 613 670 8438 > Akamai Technologies - Inverse > 145 Broadway > Cambridge, MA 02142 > Connect with Us: > [image: signature_1388875202] <https://community.akamai.com/> [image: > signature_3364560605] <http://blogs.akamai.com/> [image: > signature_2499095976] <https://twitter.com/akamai> [image: > signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [image: > signature_4082763092] > <http://www.linkedin.com/company/akamai-technologies> [image: > signature_1928680685] > <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > > ------------------------------ > *From:* Arun Kangle <ak...@gm...> > *Sent:* Tuesday, September 17, 2024 2:20:18 AM > *To:* Goimard, Jeremy > *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 > > Thanks for reply Jeremy, I tried to export / import but getting the > following error. Could you please help me? I am using 14. 0 Zen. I did not > go through the configurator. After the first boot, I just edited the > "interfaces" file to > ZjQcmQRYFpfptBannerStart > This Message Is From an Untrusted Sender > You have not previously corresponded with this sender. > > ZjQcmQRYFpfptBannerEnd > Thanks for reply Jeremy, > I tried to export / import but getting the following error. Could you > please help me? > > I am using 14.0 Zen. I did not go through the configurator. After the > first boot, I just edited the "interfaces" file to add the IP address and > copied the export.tdz from the source. > > root@packetfence:/usr/local/pf/conf# > /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz > /tmp/tmp.VG977Nk5tp /usr/local/pf/conf > > ================================================================================= > Extracting archive... > Found the following content in the archive: > total 344604 > -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt > -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql > -rw-r--r-- 1 root root 113315 Sep 17 05:13 > packetfence-db-dump-2024-09-17_10h43.sql.gz > -rw-r--r-- 1 root root 176971909 Sep 17 05:13 > packetfence-files-dump-2024-09-17_10h43.tgz > -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt > drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr > > ================================================================================= > Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' > Extracting files dump > > ================================================================================= > Found compressed database dump > 'packetfence-db-dump-2024-09-17_10h43.sql.gz' > Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' > > ================================================================================= > Get PF version in PacketFence export > 13.2.0 > > ================================================================================= > Stopping PacketFence services > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > > ================================================================================= > The database dump uses mysqldump > > --------------------------------------------------------------------------------- > Recreating database pf > > --------------------------------------------------------------------------------- > Dump file was made without triggers and procedures > Importing bare schema for 13.2 > > --------------------------------------------------------------------------------- > Replacing create statements from the dump and removing drop statements > > --------------------------------------------------------------------------------- > Importing packetfence-db-dump-2024-09-17_10h43.sql into pf > ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' > Cleaning temporary directory > > Thanks, > - Arun > > On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...> > wrote: > >> Hi Arun, >> >> >> As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not >> Debian 11. >> >> >> So, the upgrade script as is is not working. You will need to >> export/import in a new VM. >> >> >> I am currently updating our documentation. >> >> >> Thanks for reporting it and using PacketFence >> >> Regards >> >> >> *Jeremy Goimard* >> *Senior Software Engineer* >> [image: signature_117474225] >> *Office:* +1 613 670 8438 >> Akamai Technologies - Inverse >> 145 Broadway >> Cambridge, MA 02142 >> Connect with Us: >> [image: signature_1388875202] <https://community.akamai.com/> [image: >> signature_3364560605] <http://blogs.akamai.com/> [image: >> signature_2499095976] >> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> >> [image: signature_3425345268] >> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> >> [image: signature_4082763092] >> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> >> [image: signature_1928680685] >> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> >> >> ------------------------------ >> *From:* Arun Kangle via PacketFence-users < >> pac...@li...> >> *Sent:* Monday, September 16, 2024 11:09:39 AM >> *To:* pac...@li... >> *Cc:* Arun Kangle >> *Subject:* [PacketFence-users] Unable to upgrade to 14.0 >> >> Hi All, Currently I am running 13. 2. 0 version when i run >> "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise >> the latest version automatically and when i entered 14. 0 manually that too >> fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh >> ZjQcmQRYFpfptBannerStart >> This Message Is From an External Sender >> This message came from outside your organization. >> >> ZjQcmQRYFpfptBannerEnd >> Hi All, >> Currently I am running 13.2.0 version when i run >> "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the >> latest version automatically and when i entered 14.0 manually that too >> fails. >> >> root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh >> >> ================================================================================= >> Installing or upgrading the upgrade tools for PacketFence >> Hit:1 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye InRelease >> Hit:2 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye-updates InRelease >> Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye >> InRelease >> Hit:4 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >> bullseye-security InRelease >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> 88 packages can be upgraded. Run 'apt list --upgradable' to see them. >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> packetfence-upgrade is already the newest version >> (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). >> The following packages were automatically installed and are no longer >> required: >> libgnutls-dane0 libunbound8 >> Use 'apt autoremove' to remove them. >> 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. >> >> ================================================================================= >> Starting upgrade process >> >> ================================================================================= >> Attempting to disable the monit service so it doesn't interfere with the >> upgrade >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> Attempting to stop the monit service so it doesn't interfere with the >> upgrade >> >> --------------------------------------------------------------------------------- >> Stopping the PacketFence services >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> Service Status PID >> packetfence-api-frontend.service stopped 0 >> packetfence-config.service started 0 >> packetfence-docker-iptables.service disabled 0 >> packetfence-fingerbank-collector.service disabled 0 >> packetfence-galera-autofix.service disabled 0 >> packetfence-haproxy-admin.service stopped 0 >> packetfence-haproxy-db.service disabled 0 >> packetfence-haproxy-portal.service stopped 0 >> packetfence-httpd.aaa.service stopped 0 >> packetfence-httpd.admin_dispatcher.service stopped 0 >> packetfence-httpd.dispatcher.service stopped 0 >> packetfence-httpd.portal.service stopped 0 >> packetfence-httpd.webservices.service stopped 0 >> packetfence-ip6tables.service stopped 0 >> packetfence-iptables.service stopped 0 >> packetfence-kafka.service disabled 0 >> packetfence-keepalived.service stopped 0 >> packetfence-mariadb.service started 1992 >> packetfence-mysql-probe.service disabled 0 >> packetfence-netdata.service stopped 0 >> packetfence-ntlm-auth-api.service disabled 0 >> packetfence-pfacct.service stopped 0 >> packetfence-pfconnector-client.service stopped 0 >> packetfence-pfconnector-server.service stopped 0 >> packetfence-pfcron.service stopped 0 >> packetfence-pfdetect.service disabled 0 >> packetfence-pfdhcp.service stopped 0 >> packetfence-pfdhcplistener.service stopped 0 >> packetfence-pfdns.service stopped 0 >> packetfence-pffilter.service stopped 0 >> packetfence-pfipset.service stopped 0 >> packetfence-pfldapexplorer.service stopped 0 >> packetfence-pfperl-api.service stopped 0 >> packetfence-pfpki.service stopped 0 >> packetfence-pfqueue-backend.service stopped 0 >> packetfence-pfqueue-go.service stopped 0 >> packetfence-pfqueue-perl.service disabled 0 >> packetfence-pfsetacls.service stopped 0 >> packetfence-pfsso.service stopped 0 >> packetfence-pfstats.service stopped 0 >> packetfence-proxysql.service disabled 0 >> packetfence-radiusd-acct.service disabled 0 >> packetfence-radiusd-auth.service stopped 0 >> packetfence-radiusd-cli.service disabled 0 >> packetfence-radiusd-eduroam.service disabled 0 >> packetfence-radiusd-load_balancer.service disabled 0 >> packetfence-radsniff.service stopped 0 >> packetfence-redis-cache.service started 1817 >> packetfence-redis_ntlm_cache.service disabled 0 >> packetfence-redis_queue.service stopped 0 >> packetfence-snmptrapd.service disabled 0 >> packetfence-tracking-config.service disabled 1 >> >> ================================================================================= >> Generating full pre-upgrade backup to >> /root/packetfence-pre-upgrade-backup-1726498856.tgz >> /root/backup/ , folder already created. >> >> packetfence-files-dump have been created in /root/backup/ >> >> packetfence-files-dump older than 7 days have been removed. >> >> Database backup will start >> Not a Galera cluster, nothing to stop >> mysqldump completed >> Not a Galera cluster, nothing to reenable >> /tmp/tmp.MfRZFp07Eq /usr/local/pf >> >> ================================================================================= >> Copying dump files to temporary export directory >> Database dump uses mysqldump. Exporting the grants from the database. >> Enter the MariaDB root password if prompted to >> >> ================================================================================= >> Building list of configuration files for this current version >> >> ================================================================================= >> Computing additional files that are referenced in the configuration >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/admin.conf) >> Found reference to external file that is outside the PF directory >> (/usr/local/fingerbank/conf/fingerbank.conf) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/iptables-input.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/iptables-input-management.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/ip6tables-input-management.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/report.conf) >> >> ================================================================================= >> Creating export archive >> add_files.txt >> grants.sql >> packetfence-db-dump-2024-09-16_20h32.sql.gz >> packetfence-files-dump-2024-09-16_20h30.tgz >> stored_config_files.txt >> usr/ >> usr/local/ >> usr/local/fingerbank/ >> usr/local/fingerbank/conf/ >> usr/local/fingerbank/conf/fingerbank.conf >> >> ================================================================================= >> Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz >> Cleaning temporary directory >> >> ================================================================================= >> Do you wish to perform the update of the operating system to the latest >> available patches during that process? (y/n): y >> >> ================================================================================= >> Backing up git_commit_id >> Backing up pf-release >> >> ================================================================================= >> Performing upgrade of the packages >> Unable to detect packages to remove >> dpkg-query: no packages found matching libmariadb-dev >> Unable to detect a libmariadb-dev package, upgrade will continue >> % Total % Received % Xferd Average Speed Time Time Time >> Current >> Dload Upload Total Spent Left >> Speed >> 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 >> 2 >> The latest stable PacketFence version is 13.2, enter 'y' to upgrade to >> this version or 'n' to specify the version manually (y/n): n >> Please enter the PacketFence version to which you wish to upgrade: 14.0 >> Hit:1 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >> bullseye-security InRelease >> Hit:2 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye InRelease >> Hit:3 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye-updates InRelease >> Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >> InRelease >> Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >> Release >> 404 Not Found [IP: 192.95.20.194 80] >> Reading package lists... Done >> E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 >> bullseye Release' does not have a Release file. >> N: Updating from such a repository can't be done securely, and is >> therefore disabled by default. >> N: See apt-secure(8) manpage for repository creation and user >> configuration details. >> root@guestpf:/# >> >> Am I missing anything? >> Thanks in advance, >> - Arun >> > |