|
From: Gregor F. <fa...@de...> - 2020-02-21 13:18:02
|
I have tried with pf test and the user account and the users group. Authenticating against 'DELODC3_DELODC4' in context 'admin' Authentication SUCCEEDED against DELODC3_DELODC4 (Authentication successful.) Matched against DELODC3_DELODC4 for 'authentication' rule all set_role : DTI set_access_duration : 1D Did not match against DELODC3_DELODC4 for 'administration' rules Authenticating against 'DELODC3_DELODC4' in context 'portal' Authentication SUCCEEDED against DELODC3_DELODC4 (Authentication successful.) Matched against DELODC3_DELODC4 for 'authentication' rule all set_role : DTI set_access_duration : 1D Did not match against DELODC3_DELODC4 for 'administration' rules I don't have any administration rules. However when I use the machine account and the corresponding group I always get Reply-Message = "max nodes per pid met or exceeded" unless I set the role in the Node configuration. Best regards, Gregor Fajdiga Sistemski administrator, Informatika System administrator, IT Delo, d.o.o. Dunajska 5, SI-1509 Ljubljana T: +386 1 4737 993 fa...@de... <mailto:fa...@de...> www.delo.si <http://www.delo.si> Gregor Fajdiga wrote: > Could you please tell me how you did that. > > I am trying to set a rule in the Authentication source, but it doesn't > seem to work. > > I have tried the following > memberOf is member of IT > memberOf equals IT > memberOf is member of ou=IT,ou=..., ... > memberOf equals ou=IT,ou=..., ... > > My version of Packetfence is 9.3.0. > > Best regards, > > Gregor Fajdiga > Sistemski administrator, Informatika > System administrator, IT > > > Delo, d.o.o. > Dunajska 5, > SI-1509 Ljubljana > > T: +386 1 4737 993 > fa...@de... <mailto:fa...@de...> > > www.delo.si <http://www.delo.si> > > > Truax, Peter via PacketFence-users wrote: >> If the user is found in Active Directory, then the switch port is >> configured for a vlan based on the users AD group OU. > |