|
From: Gavin P. <gp...@gr...> - 2015-07-10 17:33:40
|
Steven, I'm not an expert either, but I think you're on the right track. The registration and isolation VLANs don't need to be routed as long as the PacketFence server has an interface in each VLAN. I think you can set up passthroughs on the Configuration > Trapping page to allow isolated nodes to certain internet resources for remediation (like AV or Windows updates). -------------------------------------------------- Gavin Pyle Network Engineer Green River College gp...@gr...<mailto:gp...@gr...> [http://www.greenriver.edu/Images/news/captions/2013-gator-logo-300.jpg] From: Weissenburger, Steven C [mailto:scw...@ga...] Sent: Thursday, July 9, 2015 11:36 AM To: pac...@li... Subject: [PacketFence-users] PacketFence newbie Hello, I'm very new to packetfence and have just completed the build. I'm struggling with how sub-interfaces/vlans should be setup. Is there a document or can someone explain how the management, registration and isolation are supposed to work? I'm using an out-of-band deployment (with captive portal) and have my mgt. interface setup as a routable address on my network. I'm using non-routable addresses for my registration and isolation vlans. Is this the preferred method or do all interfaces need to be routable. Thanks, Steve Steve Weissenburger Project Leader - Enterprise Network Practice [Gannett] gannett.com<http://www.gannett.com/> |