You can subscribe to this list here.
2007 |
Jan
|
Feb
|
Mar
|
Apr
|
May
(3) |
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
---|---|---|---|---|---|---|---|---|---|---|---|---|
2008 |
Jan
|
Feb
|
Mar
|
Apr
(1) |
May
(17) |
Jun
(23) |
Jul
(40) |
Aug
(48) |
Sep
(32) |
Oct
(38) |
Nov
(36) |
Dec
(78) |
2009 |
Jan
(31) |
Feb
(76) |
Mar
(44) |
Apr
(92) |
May
(84) |
Jun
(71) |
Jul
(50) |
Aug
(68) |
Sep
(42) |
Oct
(40) |
Nov
(28) |
Dec
(53) |
2010 |
Jan
(52) |
Feb
(81) |
Mar
(60) |
Apr
(57) |
May
(50) |
Jun
(42) |
Jul
(85) |
Aug
(51) |
Sep
(61) |
Oct
(59) |
Nov
(51) |
Dec
(36) |
2011 |
Jan
(121) |
Feb
(172) |
Mar
(133) |
Apr
(116) |
May
(116) |
Jun
(78) |
Jul
(98) |
Aug
(148) |
Sep
(90) |
Oct
(151) |
Nov
(100) |
Dec
(161) |
2012 |
Jan
(159) |
Feb
(135) |
Mar
(204) |
Apr
(149) |
May
(156) |
Jun
(118) |
Jul
(154) |
Aug
(146) |
Sep
(226) |
Oct
(186) |
Nov
(77) |
Dec
(92) |
2013 |
Jan
(109) |
Feb
(117) |
Mar
(115) |
Apr
(148) |
May
(216) |
Jun
(271) |
Jul
(382) |
Aug
(323) |
Sep
(157) |
Oct
(120) |
Nov
(110) |
Dec
(113) |
2014 |
Jan
(192) |
Feb
(120) |
Mar
(185) |
Apr
(117) |
May
(150) |
Jun
(205) |
Jul
(169) |
Aug
(239) |
Sep
(197) |
Oct
(117) |
Nov
(148) |
Dec
(121) |
2015 |
Jan
(170) |
Feb
(290) |
Mar
(252) |
Apr
(349) |
May
(417) |
Jun
(351) |
Jul
(234) |
Aug
(188) |
Sep
(126) |
Oct
(333) |
Nov
(153) |
Dec
(115) |
2016 |
Jan
(212) |
Feb
(272) |
Mar
(181) |
Apr
(221) |
May
(222) |
Jun
(275) |
Jul
(160) |
Aug
(151) |
Sep
(165) |
Oct
(137) |
Nov
(111) |
Dec
(83) |
2017 |
Jan
(191) |
Feb
(140) |
Mar
(145) |
Apr
(109) |
May
(218) |
Jun
(112) |
Jul
(219) |
Aug
(191) |
Sep
(105) |
Oct
(217) |
Nov
(196) |
Dec
(158) |
2018 |
Jan
(303) |
Feb
(138) |
Mar
(93) |
Apr
(64) |
May
(239) |
Jun
(204) |
Jul
(181) |
Aug
(191) |
Sep
(91) |
Oct
(119) |
Nov
(158) |
Dec
(162) |
2019 |
Jan
(168) |
Feb
(218) |
Mar
(126) |
Apr
(178) |
May
(154) |
Jun
(147) |
Jul
(279) |
Aug
(179) |
Sep
(126) |
Oct
(118) |
Nov
(73) |
Dec
(70) |
2020 |
Jan
(135) |
Feb
(157) |
Mar
(187) |
Apr
(100) |
May
(112) |
Jun
(111) |
Jul
(117) |
Aug
(87) |
Sep
(92) |
Oct
(237) |
Nov
(134) |
Dec
(147) |
2021 |
Jan
(58) |
Feb
(79) |
Mar
(191) |
Apr
(193) |
May
(95) |
Jun
(155) |
Jul
(146) |
Aug
(86) |
Sep
(106) |
Oct
(69) |
Nov
(102) |
Dec
(71) |
2022 |
Jan
(70) |
Feb
(198) |
Mar
(89) |
Apr
(88) |
May
(65) |
Jun
(57) |
Jul
(92) |
Aug
(41) |
Sep
(81) |
Oct
(112) |
Nov
(56) |
Dec
(106) |
2023 |
Jan
(98) |
Feb
(14) |
Mar
(130) |
Apr
(62) |
May
(40) |
Jun
(36) |
Jul
(32) |
Aug
(34) |
Sep
(18) |
Oct
(48) |
Nov
(44) |
Dec
(20) |
2024 |
Jan
(36) |
Feb
(75) |
Mar
(70) |
Apr
(67) |
May
(57) |
Jun
(55) |
Jul
(48) |
Aug
(44) |
Sep
(64) |
Oct
(14) |
Nov
|
Dec
|
From: Yannik S. <ya...@se...> - 2024-09-19 16:43:04
|
Hi, I am doing a fresh step-by-step packetfence 14.0 / debian 12 install. So far, I did the basic user/network interfaced setup, configured a switch and registered a node. Then I tested MAC authentication with the juniper switch and it worked fine. Now I wanted to enable accounting to get proper online/offline status. I configured the accounting on my switch and can confirm that it is correctly sending accounting packets to port 1813 on packetfence. However, the accounting does not seem to work, I do not see online/offline status on my node, nor anything in reports/accounting, and the packets sent from the switch go unanswered. I did enable 'Process Bandwidth Accounting' in /Configuration → System Configuration → RADIUS → General/ menu and restarted pfacct. (per the docs) I could also see the pfacct container running: 473d8718b3cf packetfence/pfacct:maintenance-14-0 "/bin/sh -c /usr/loc…" 29 minutes ago Up 29 minutes 0.0.0.0:1813->1813/udp, :::1813->1813/udp, 0.0.0.0:2056->2056/udp, :::2056->2056/udp pfacct No /usr/local/pf/logs/pfacct.log file exists for some reason. docker logs pfacct results in "Error response from daemon: configured logging driver does not support reading". Stopping pfacct in the webinterface and running /usr/local/pf/sbin/pfacct manually lead to accounting to work. Online/offline even worked with "Process Bandwidth Accounting" disabled, contrary to the docs. The command did however not emit any log messages, and it did not have any parameters to increase logging. After all this testing, I stopped the manually started pfacct, started the containerized one via status/services, and tested again. Same issue. Per https://www.packetfence.org/doc/PacketFence_Installation_Guide.html#_pfacct_track_bandwidth_usage, radiusd-acct is retired and pfacct should be used. I tested radiusd-acct anyway (after disabling pfacct), but it did not work either (raddebug shows thousands of lines of debug output, it no response is every sent to the switch). Why is this still being shipped if it should not be used anymore/isn't even working? How can I further debug / fix the containerized pfacct? Best regards Yannik |
From: Andrey C. <che...@np...> - 2024-09-19 09:43:30
|
Hi Yannik, Thank you for your prompt and insightful response. I’ll be testing the custom syslog configuration in my lab shortly. As for the pull request, since I'm not entirely sure how to resolve the issue, I believe it leans more toward a bug report. Therefore, I've gone ahead and created one here: https://github.com/inverse-inc/packetfence/issues/8316 -- Andrey Chernyakov Senior Network and Security Engineer email: che...@np... NPS Consult S.A. L-5687, Dalheim Luxembourg On 18 Sep 2024 at 12:52 +0200, Yannik Sembritzki via PacketFence-users <pac...@li...>, wrote: > Hi Andrey, > > I guess you could completely create your own rsyslog config by putting it in a different file (/etc/rsyslog.d/my-custom-syslog.conf). > > Apart from this, extending the the syslogtag field length seems like something that should be fixed in upstream. Could you open a PR for this? > Perhaps the SYSLOG.ident field can be added in upstream too, if it makes sense. I don't know what that contains - googling "rsyslog syslog.ident" did not yield any useful results. > > Best regards > Yannik > > On 18.09.24 10:50, Andrey Chernyakov via PacketFence-users wrote: > > Hello PacketFence community, > > > > I am currently configuring rsyslog on a server running PacketFence to forward log messages with a custom template that extends the syslogtag to 64 characters and adds a SYSLOG.ident field. The configuration works fine, but every time I restart the rsyslog service, my custom configuration gets overridden. > > > > Details: > > > > • PacketFence Version: 13.1 > > • OS: Debian 11 (deployed from PacketFence ZEN appliance image) > > • Rsyslog Configuration: I'm using a custom template in /etc/rsyslog.d/packetfence.conf that looks like this: > > > > $template ForwardedMessageTemplate,"%timegenerated% %HOSTNAME% SYSLOG.ident %syslogtag:1:64%%msg%\n" > > @@192.168.1.100:514;ForwardedMessageTemplate > > > > • Issue: After restarting rsyslog, the custom configuration is replaced, and the default settings are applied. Is there a recommended approach for preserving rsyslog configurations across service restarts in a PacketFence setup? > > > > By default, the syslogtag message is limited to 32 characters. This limitation is evident in log entries such as: > > > > • api-frontend-docker-wrapper[1587 > > • radiusd-load-balancer-docker-wra > > > > > > I'd appreciate any insights or best practices from the community. > > Thanks in advance! > > > > <jokVw0kJDUYhn8bX.png> > > > > -- > > Andrey Chernyakov > > Senior Network and Security Engineer > > > > email: che...@np... > > phone: (+352) 621260657 > > > > NPS Consult S.A. > > L-5687, Dalheim > > Luxembourg > > > > > > _______________________________________________ > > PacketFence-users mailing list > > Pac...@li... > > https://lists.sourceforge.net/lists/listinfo/packetfence-users > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users |
From: Denis W. <de...@ni...> - 2024-09-19 05:04:59
|
Some more details systemctl start packetfence Job for packetfence.service failed because a timeout was exceeded. See "systemctl status packetfence.service" and "journalctl -xeu packetfence.service" for details. journalctl -xeu packetfence.service Sep 19 07:46:27 ServerXXXX sudo[39384]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 19 07:46:28 ServerXXXX sudo[39384]: pam_unix(sudo:session): session closed for user root Sep 19 07:46:28 ServerXXXX pfcmd[38563]: Service Status PID Sep 19 07:46:28 ServerXXXX pfcmd[38563]: Checking configuration sanity... Sep 19 07:46:28 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: Connecting to MySQL database (pfconfig::backend::mysql::_get_db) Sep 19 07:46:28 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: secure redirect has been disabled since the portal certificate i> Sep 19 07:46:42 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: Connecting to MySQL database (pfconfig::backend::mysql::_get_db) Sep 19 07:46:42 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: secure redirect has been disabled since the portal certificate i> Sep 19 07:46:47 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: Processing rule 'pfdns' (pf::config::builder::filter_engine::bui> Sep 19 07:46:47 ServerXXXX packetfence[38563]: pfcmd.pl(38563) INFO: Processing rule 'pf_deauth_from_wireless_secure' (pf::config::bu> Sep 19 07:46:47 ServerXXXX sudo[39407]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/systemctl status packetfence.target Sep 19 07:46:47 ServerXXXX sudo[39407]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 19 07:46:47 ServerXXXX sudo[39407]: pam_unix(sudo:session): session closed for user root Sep 19 07:46:47 ServerXXXX sudo[39409]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/systemctl isolate packetfence.target Sep 19 07:46:47 ServerXXXX sudo[39409]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 19 07:48:20 ServerXXXX systemd[1]: packetfence.service: start operation timed out. Terminating. Sep 19 07:48:20 ServerXXXX sudo[39409]: pam_unix(sudo:session): session closed for user root Sep 19 07:48:20 ServerXXXX systemd[1]: packetfence.service: Failed with result 'timeout'. ░░ Subject: Unit failed ░░ Defined-By: systemd ░░ Support: https://www.debian.org/support ░░ ░░ The unit packetfence.service has entered the 'failed' state with result 'timeout'. Sep 19 07:48:20 ServerXXXX systemd[1]: Failed to start packetfence.service - PacketFence Service. ░░ Subject: A start job for unit packetfence.service has failed ░░ Defined-By: systemd ░░ Support: https://www.debian.org/support ░░ ░░ A start job for unit packetfence.service has finished with a failure. ░░ ░░ The job identifier is 40646 and the job result is failed. Sep 19 07:48:20 ServerXXXX systemd[1]: packetfence.service: Consumed 28.787s CPU time. ░░ Subject: Resources consumed by unit runtime ░░ Defined-By: systemd ░░ Support: https://www.debian.org/support ░░ ░░ The unit packetfence.service completed and consumed the indicated resources. On Thu, 19 Sept 2024 at 05:49, Denis Wahome <de...@ni...> wrote: > I have the following configuration for a new installation, > > 19GB RAM > 4 vCPU > 200GB HDD > > This is the status; > > systemctl status packetfence > × packetfence.service - PacketFence Service > Loaded: loaded (/lib/systemd/system/packetfence.service; enabled; > preset: enabled) > Active: failed (Result: timeout) since Wed 2024-09-18 19:50:50 EAT; > 9h ago > Process: 1091 ExecStart=/usr/local/pf/bin/pfcmd service pf start > (code=killed, signal=TERM) > CPU: 28.569s > > Sep 18 19:49:20 gatekeeper sudo[2432]: root : PWD=/ ; USER=root ; > COMMAND=/usr/bin/systemctl status packetfence.target > Sep 18 19:49:20 gatekeeper sudo[2432]: pam_unix(sudo:session): session > opened for user root(uid=0) by (uid=0) > Sep 18 19:49:20 gatekeeper sudo[2432]: pam_unix(sudo:session): session > closed for user root > Sep 18 19:49:20 gatekeeper sudo[2434]: root : PWD=/ ; USER=root ; > COMMAND=/usr/bin/systemctl isolate packetfence.target > Sep 18 19:49:20 gatekeeper sudo[2434]: pam_unix(sudo:session): session > opened for user root(uid=0) by (uid=0) > Sep 18 19:50:49 gatekeeper systemd[1]: packetfence.service: start > operation timed out. Terminating. > Sep 18 19:50:49 gatekeeper sudo[2434]: pam_unix(sudo:session): session > closed for user root > Sep 18 19:50:50 gatekeeper systemd[1]: packetfence.service: Failed with > result 'timeout'. > Sep 18 19:50:50 gatekeeper systemd[1]: Failed to start packetfence.service > - PacketFence Service. > Sep 18 19:50:50 gatekeeper systemd[1]: packetfence.service: Consumed > 28.569s CPU time. > |
From: Denis W. <de...@ni...> - 2024-09-19 03:14:30
|
I have the following configuration for a new installation, 19GB RAM 4 vCPU 200GB HDD This is the status; systemctl status packetfence × packetfence.service - PacketFence Service Loaded: loaded (/lib/systemd/system/packetfence.service; enabled; preset: enabled) Active: failed (Result: timeout) since Wed 2024-09-18 19:50:50 EAT; 9h ago Process: 1091 ExecStart=/usr/local/pf/bin/pfcmd service pf start (code=killed, signal=TERM) CPU: 28.569s Sep 18 19:49:20 gatekeeper sudo[2432]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/systemctl status packetfence.target Sep 18 19:49:20 gatekeeper sudo[2432]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 18 19:49:20 gatekeeper sudo[2432]: pam_unix(sudo:session): session closed for user root Sep 18 19:49:20 gatekeeper sudo[2434]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/systemctl isolate packetfence.target Sep 18 19:49:20 gatekeeper sudo[2434]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0) Sep 18 19:50:49 gatekeeper systemd[1]: packetfence.service: start operation timed out. Terminating. Sep 18 19:50:49 gatekeeper sudo[2434]: pam_unix(sudo:session): session closed for user root Sep 18 19:50:50 gatekeeper systemd[1]: packetfence.service: Failed with result 'timeout'. Sep 18 19:50:50 gatekeeper systemd[1]: Failed to start packetfence.service - PacketFence Service. Sep 18 19:50:50 gatekeeper systemd[1]: packetfence.service: Consumed 28.569s CPU time. |
From: FLÁVIO S. <adm...@gm...> - 2024-09-18 21:57:16
|
My friends, how I can go to the phone number field in captive portal so that the person can only use digit numbers and not other characters? Too need that minimum and Maximum lenght caracteres for Cell númber. |
From: Satkunas, D. <dsa...@ak...> - 2024-09-18 14:24:45
|
In the connection profile edit layout.html with the following 2 changes: Line 14, replace <body> with - adjust the path in url() to the image you want to use <body style="background-color: transparent; background-image: url(/portal_preview/profile-templates/default/logo.png); background-repeat: repeat; background-attachment: fixed; background-position: center;"> Line 21, replace <header> with <header style="background-color: transparent;"> Darren Satkunas Software Engineer Senior Lead [signature_91702086] Office: +1.617.444.1234 Cell: +1.617.444.1234 Akamai Technologies 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_117365058]<https://community.akamai.com/> [signature_1004417448] <http://blogs.akamai.com/> [signature_3192415103] <https://twitter.com/akamai> [signature_2883625797] <http://www.facebook.com/AkamaiTechnologies> [signature_3378242615] <http://www.linkedin.com/company/akamai-technologies> [signature_274248214] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> From: Arun Kangle via PacketFence-users <pac...@li...> Reply-To: "pac...@li..." <pac...@li...> Date: Friday, September 13, 2024 at 12:10 PM To: "pac...@li..." <pac...@li...> Cc: Arun Kangle <ak...@gm...> Subject: [PacketFence-users] Adding logo and background image to the portal Hello All, Could anyone please point me to a quick way to add the background image and a logo to the captive portal? Many thanks in advance, - Arun ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hello All, Could anyone please point me to a quick way to add the background image and a logo to the captive portal? Many thanks in advance, - Arun |
From: Peter J. <pac...@sc...> - 2024-09-18 14:04:43
|
Why SNMP ? That should not be needed for assignment VLANs through radius responses. I cannot find the log where where the full radius parameters are present, more of this futher down in this mail. Only the radius.log, which contains the following, which is telling me that i am authenticated. 2024-09-18T15:49:35.306664+02:00 packetfence-14 auth[148051]: (132) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00 via TLS tunnel) 2024-09-18T15:49:35.316789+02:00 packetfence-14 auth[148051]: (133) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) 2024-09-18T15:50:22.978230+02:00 packetfence-14 auth[148051]: (145) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00 via TLS tunnel) 2024-09-18T15:50:22.987215+02:00 packetfence-14 auth[148051]: (146) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) 2024-09-18T15:51:11.071693+02:00 packetfence-14 auth[148051]: (159) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00 via TLS tunnel) 2024-09-18T15:51:11.080839+02:00 packetfence-14 auth[148051]: (160) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) 2024-09-18T15:51:58.847027+02:00 packetfence-14 auth[148051]: Adding client 10.249.179.179/32 2024-09-18T15:51:58.983924+02:00 packetfence-14 auth[148051]: (172) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00 via TLS tunnel) 2024-09-18T15:51:58.992849+02:00 packetfence-14 auth[148051]: (173) Login OK: [test03@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) The Packetfence.log states that i am hitting realm default. In realm default i have selected the, and there are no rules, and the role has already been computed. and the Returned vlan is undefined. So even though i have the Role by vlan id, i have made the connection profile with the following and selected the correct authentication source under sources. And the user bind has is being validated through the test button under the connection profile and the authentication rules are simpel: i am still not getting the role selected. 2024-09-18T15:51:11.039159+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Instantiate profile mydomain-Users (pf::Connection::ProfileFactory::_from_profile) 2024-09-18T15:51:11.054188+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Found authentication source(s) : '' for realm 'default' (pf::config::util::filter_authentication_sources) 2024-09-18T15:51:11.054188+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] No rules matches or no category defined for the node, set it as unreg. (pf::role::getNodeInfoForAutoReg) 2024-09-18T15:51:11.054188+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] No category computed for autoreg (pf::role::getNodeInfoForAutoReg) 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Found authentication source(s) : '' for realm 'default' (pf::config::util::filter_authentication_sources) 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Role has already been computed and we don't want to recompute it. Getting role from node_info (pf::role::getRegisteredRole) 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $role in concatenation (.) or string at /usr/local/pf/lib/pf/role.pm line 489. 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Username was NOT defined or unable to match a role - returning node based role '' (pf::role::getRegisteredRole) 2024-09-18T15:51:11.059552+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] PID: "default", Status: reg Returned VLAN: (undefined), Role: (undefined) (pf::role::fetchRoleForNode) 2024-09-18T15:51:11.060664+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $vlanName in hash element at /usr/local/pf/lib/pf/Switch.pm line 683. 2024-09-18T15:51:11.060664+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $name in exists at /usr/local/pf/lib/pf/Switch.pm line 717. 2024-09-18T15:51:11.061122+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $vlanName in concatenation (.) or string at /usr/local/pf/lib/pf/Switch.pm line 690. 2024-09-18T15:51:11.061122+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] No parameter Vlan found in conf/switches.conf for the switch 10.249.179.179 (pf::Switch::getVlanByName) 2024-09-18T15:51:11.063646+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $roleName in hash element at /usr/local/pf/lib/pf/Switch.pm line 640. 2024-09-18T15:51:11.063646+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $name in exists at /usr/local/pf/lib/pf/Switch.pm line 661. 2024-09-18T15:51:11.063646+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] Use of uninitialized value $roleName in concatenation (.) or string at /usr/local/pf/lib/pf/Switch.pm line 647. 2024-09-18T15:51:11.063646+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) WARN: [mac:50:00:00:04:00:00] No parameter Role found in conf/switches.conf for the switch 10.249.179.179 (pf::Switch::getRoleByName) 2024-09-18T15:51:11.068254+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] security_event 1300003 force-closed for 50:00:00:04:00:00 (pf::security_event::security_event_force_close) 2024-09-18T15:51:11.068685+02:00 packetfence-14 httpd.aaa-docker-wrapper[2940]: httpd.aaa(7) INFO: [mac:50:00:00:04:00:00] Instantiate profile mydomain-Users (pf::Connection::ProfileFactory::_from_profile) I cannot see where i have made a mistake, but it is not working for me on both virtual and physical switches. Final note, i have tried to find the raduis request log, but without any luck. I tried to grep after the NAS-IP-Address in both OS logs and in PF logs and tested the grep command after the username i am testing with. root@packetfence-14:/usr/local/pf/logs# grep -rni 'NAS-IP-Address' /usr/local/pf/logs/* root@packetfence-14:/usr/local/pf/logs# grep -rni 'NAS-IP-Address' /var/log/* root@packetfence-14:/usr/local/pf/logs# root@packetfence-14:/usr/local/pf/logs# grep -rni 'test01' /usr/local/pf/logs/* /usr/local/pf/logs/radius.log:163:2024-09-17T19:55:31.623353+02:00 packetfence-14 auth[55935]: (2) Login incorrect (eap: rlm_eap (EAP): No EAP session matching state 0xfc3b8a28fc399384): [test01@mydomain.local] (from client 10.249.179.179/32 port 50102 cli 50:00:00:04:00:00) So any pointers would be helpful :-) Thanks in advance \Peter On 16/09/2024 20.12, Rein van ‘t Veer via PacketFence-users wrote: > A few things: check if snmp traffic is working from packetfence to the > switch. > > Also check the radius return logs to see if the vlan is returned. This > is easy in the web interface. Under auditing; RADIUS logs you can see > the full return strings from PacketFence > > Example: > > RADIUS Request > Airespace-Wlan-Id = "1", Called-Station-Id = > "d4:6d:50:e3:ae:e0:Samvaerket-guests", Called-Station-SSID = > "Samvaerket-guests", Calling-Station-Id = "e6:63:3c:fb:8a:dc", > Cisco-AVPair = "service-type=Call Check", Cisco-AVPair = > "audit-session-id=1400330A0004884BFC03D52A", Cisco-AVPair = > "method=mab", Cisco-AVPair = "client-iif-id=1073747193", Cisco-AVPair > = "vlan-id=498", Cisco-AVPair = "cisco-wlan-ssid=Samvaerket-guests", > Cisco-AVPair = "wlan-profile-name=Samvaerket-guests", Event-Timestamp > = "Sep 16 2024 20:06:35 CEST", Framed-MTU = "1485", > FreeRADIUS-Client-IP-Address = "10.51.0.20", Message-Authenticator = > "0xaf1468be12d6bb5e7c6a432fa81225ef", NAS-IP-Address = "10.51.0.20", > NAS-Identifier = "WLC", NAS-Port = "51012", NAS-Port-Id = > "capwap_90000006", NAS-Port-Type = "Wireless-802.11", > PacketFence-KeyBalanced = "c2acf8e4cbb314039e027c04672c5bd4", > PacketFence-Radius-Ip = "10.51.0.11", Realm = "null", Service-Type = > "Call-Check", Stripped-User-Name = "e6633cfb8adc", User-Name = > "e6633cfb8adc", User-Password = "******" > > RADIUS Reply > REST-HTTP-Status-Code = "200", Tunnel-Medium-Type = "IEEE-802", > Tunnel-Private-Group-Id = "500", Tunnel-Type = "VLAN" > > Once you have verified the vlan is returned you can see what the > switch is doing with the request. > Sent from my iPhone > >> On 16 Sep 2024, at 16.43, Peter Jensen via PacketFence-users >> <pac...@li...> wrote: >> >> >> >> Hello, >> >> I’m currently working on a PacketFence setup and having trouble with >> the dynamic VLAN assignment. Authentication is functioning correctly >> (verified via logs), and the switch confirms that 802.1X >> authentication is successful. However, VLAN assignment is not working >> as expected. >> >> Here’s a summary of my setup and the steps I’ve taken: >> >> • I have added the switch and enabled Role Mapping by VLAN ID, >> assigning the correct VLAN ID. >> • I created an Authentication Source with Authentication Rules >> using the memberof condition and the full DN of the LDAP group. This >> has been tested with and without any conditions, with the same result. >> • The issue persists where no VLAN is assigned after >> successful authentication. >> >> Logs >> >> Below are some logs that may help diagnose the issue: >> >> *packetfence.log* >> >> 2024-09-16T15:57:44.791790+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Instantiate profile 8021x >> (pf::Connection::ProfileFactory::_from_profile) >> 2024-09-16T15:57:44.809341+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Found authentication source(s) : '' for realm >> 'null' (pf::config::util::filter_authentication_sources) >> 2024-09-16T15:57:44.809463+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] No rules matches or no category defined for >> the node, set it as unreg. (pf::role::getNodeInfoForAutoReg) >> 2024-09-16T15:57:44.809463+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: >> [mac:00:e0:4c:68:08:27] No category computed for autoreg >> (pf::role::getNodeInfoForAutoReg) >> 2024-09-16T15:57:44.814522+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: >> [mac:00:e0:4c:68:08:27] Username was NOT defined or unable to match a >> role - returning node based role '' (pf::role::getRegisteredRole) >> 2024-09-16T15:57:44.814864+02:00 packetfence-14 >> httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: >> [mac:00:e0:4c:68:08:27] No parameter Vlan found in conf/switches.conf >> for the switch 192.168.188.212 (pf::Switch::getVlanByName) >> >> >> *radius.log* >> >> 2024-09-16T15:57:44.258471+02:00 packetfence-14 auth[91590]: Adding >> client 192.168.188.212/32 >> 2024-09-16T15:57:44.827353+02:00 packetfence-14 auth[91590]: (42) >> Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli >> 00:e0:4c:68:08:27 via TLS tunnel) >> 2024-09-16T15:57:44.837698+02:00 packetfence-14 auth[91590]: (43) >> Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli >> 00:e0:4c:68:08:27) >> >> >> What I’ve Tried: >> >> • Confirmed that the authentication source is correctly >> configured, using an LDAP group with the full DN in the rule. >> • Verified that the switch is properly configured for 802.1X >> and dynamic VLAN assignment. >> • Examined the PacketFence configuration for role mapping and >> VLAN settings, but the VLAN remains undefined after authentication. >> >> Environment: >> >> • PacketFence version: 14 >> • Switch model and firmware: >> vios_l2-ADVENTERPRISEK9-M), Experimental Version 15.2(20200924:215240 >> C3560 Software (C3560-IPBASE-M), >> Version 12.2(35)SE5 >> • Authentication source: ActiveDirecty >> • OS of PacketFence server: Debian 12 >> >> Any help or direction on how to resolve this VLAN assignment issue >> would be appreciated! Has anyone encountered something similar? >> >> Thanks in advance. >> >> Best regards, >> [Your Name] >> >> _______________________________________________ >> PacketFence-users mailing list >> Pac...@li... >> https://lists.sourceforge.net/lists/listinfo/packetfence-users > > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users |
From: Goimard, J. <jeg...@ak...> - 2024-09-18 12:18:11
|
Hi Arun, Thanks. Looks like it is from there: https://mariadb.org/mariadb-dump-file-compatibility-change/ The dump is done with a wrong version "MariaDB dump 10.19 Distrib 10.5.26-MariaDB, for debian-linux-gnu (x86_64)" Did you follow that https://github.com/inverse-inc/packetfence/issues/8257#issuecomment-2353655213 ? We are not using "10.5.26" not in PF13.2 or before. You should fix that. Check the version of your mariadb-backup if you have one. You can also check the PR about documentation there: https://github.com/inverse-inc/packetfence/pull/8313 You will find there command line that can help you to debug your issue. Good luck. Thank you Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle <ak...@gm...> Sent: Wednesday, September 18, 2024 2:27:26 AM To: Goimard, Jeremy Cc: pac...@li... Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 /*M!999999\- enable the sandbox mode */ -- MariaDB dump 10. 19 Distrib 10. 5. 26-MariaDB, for debian-linux-gnu (x86_64) -- -- Host: localhost Database: pf -- ------------------------------------------------------ -- Server version 10. 5. 24-MariaDB-1: 10. 5. 24+maria~deb11 ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd /*M!999999\- enable the sandbox mode */ -- MariaDB dump 10.19 Distrib 10.5.26-MariaDB, for debian-linux-gnu (x86_64) -- -- Host: localhost Database: pf -- ------------------------------------------------------ -- Server version 10.5.24-MariaDB-1:10.5.24+maria~deb11 /*!40101 SET @OLD_CHARACTER_SET_CLIENT=@@CHARACTER_SET_CLIENT */; /*!40101 SET @OLD_CHARACTER_SET_RESULTS=@@CHARACTER_SET_RESULTS */; /*!40101 SET @OLD_COLLATION_CONNECTION=@@COLLATION_CONNECTION */; /*!40101 SET NAMES utf8mb4 */; /*!40103 SET @OLD_TIME_ZONE=@@TIME_ZONE */; /*!40103 SET TIME_ZONE='+00:00' */; /*!40014 SET @OLD_UNIQUE_CHECKS=@@UNIQUE_CHECKS, UNIQUE_CHECKS=0 */; /*!40014 SET @OLD_FOREIGN_KEY_CHECKS=@@FOREIGN_KEY_CHECKS, FOREIGN_KEY_CHECKS=0 */; /*!40101 SET @OLD_SQL_MODE=@@SQL_MODE, SQL_MODE='NO_AUTO_VALUE_ON_ZERO' */; /*!40111 SET @OLD_SQL_NOTES=@@SQL_NOTES, SQL_NOTES=0 */; -- -- Table structure for table `action` -- DROP TABLE IF EXISTS `action`; /*!40101 SET @saved_cs_client = @@character_set_client */; /*!40101 SET character_set_client = utf8 */; CREATE TABLE `action` ( `security_event_id` int(11) NOT NULL, `action` varchar(255) NOT NULL, PRIMARY KEY (`security_event_id`,`action`), CONSTRAINT `FOREIGN` FOREIGN KEY (`security_event_id`) REFERENCES `class` (`security_event_id`) ON DELETE CASCADE ON UPDATE CASCADE ) ENGINE=InnoDB DEFAULT CHARSET=utf8mb4 COLLATE=utf8mb4_general_ci; /*!40101 SET character_set_client = @saved_cs_client */; -- -- Dumping data for table `action` -- LOCK TABLES `action` WRITE; /*!40000 ALTER TABLE `action` DISABLE KEYS */; INSERT IGNORE INTO `action` VALUES (0,'email_admin'),(1100001,'email_admin'),(1100001,'reevaluate_access'),(1100002,'email_admin'),(1100002,'reevaluate_access'),(1100003,'email_ admin'),(1100003,'reevaluate_access'),(1100004,'email_admin'),(1100004,'reevaluate_access'),(1100006,'email_admin'),(1100006,'reevaluate_access'),(1100007,'autoreg'),(1100008,'e mail_admin'),(1100008,'reevaluate_access'),(1100009,'email_admin'),(1100010,'email_admin'),(1100011,'email_admin'),(1100012,'email_admin'),(1100020,'email_admin'),(1100021,'emai l_admin'),(1100022,'email_admin'),(1100023,'email_admin'),(1200001,'reevaluate_access'),(1200002,'reevaluate_access'),(1200003,'reevaluate_access'),(1300000,'reevaluate_access') ,(1300001,'reevaluate_access'),(1300002,'enforce_provisioning'),(1300003,'reevaluate_access'),(1300004,'email_admin'),(1300005,'email_admin'),(1300005,'email_user'),(1300005,'re evaluate_access'),(1300006,'email_admin'),(1300007,'email_admin'),(1300008,'email_admin'),(2000000,'email_admin'),(2000000,'reevaluate_access'),(2000032,'email_admin'),(2001569, 'email_admin'),(2001904,'email_admin'),(2001972,'email_admin'),(2002030,'email_admin'),(2002030,'reevaluate_access'),(2002201,'email_admin'),(3000001,'email_admin'),(3000001,'re evaluate_access'),(3000002,'email_admin'),(3000002,'reevaluate_access'),(3000003,'email_admin'),(3000003,'reevaluate_access'),(3000004,'email_admin'),(3000004,'reevaluate_access '),(3000005,'email_admin'),(3000005,'reevaluate_access'),(3000006,'email_admin'),(3000007,'email_admin'),(3000007,'reevaluate_access'),(3000008,'email_admin'),(3000008,'email_us er'); /*!40000 ALTER TABLE `action` ENABLE KEYS */; UNLOCK TABLES; -- On Tue, Sep 17, 2024 at 9:59 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, OK, that is a new one... Never seen that before. Could you share the first 10 to 20 lines of "packetfence-db-dump-2024-09-17_20h12.sql" ? It should not contain sensitive information. It looks like there is something on the beginning of the file that made this https://github.com/inverse-inc/packetfence/blob/devel/addons/functions/database.functions#L79<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/blob/devel/addons/functions/database.functions*L79__;Iw!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdNGO9Q5vQ$> failing. You should be able to extract it from the 13.2 VM with the following command line `gunzip /root/backup/packetfence-db-dump-2024-09-17_20h12.sql.gz` Thank you for your time and patience. Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdN3zkXtoQ$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdM5yCHlBA$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdOsZLvCAg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!VrLhDg19AG_g0Cgh4bWWeQWi6vo9Fum9xlOsd_WgJedM6Gkp5O6_H4o9Uonu8gFyUX19MdO9ZfT5PQ$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 11:56:38 AM To: Goimard, Jeremy Cc: pac...@li...<mailto:pac...@li...> Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Now there is different error root@ packetfence: ~# /usr/local/pf/addons/full-import/import. sh -f /tmp/export. tgz /tmp/tmp. 5ivIKXyBON ~ ================================================================================= Extracting archive. . . Found ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Now there is different error root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.5ivIKXyBON ~ ================================================================================= Extracting archive... Found the following content in the archive: total 345072 -rw-r--r-- 1 root root 256 Sep 17 14:43 add_files.txt -rw-r--r-- 1 root root 1175 Sep 17 14:43 grants.sql -rw-r--r-- 1 root root 163588 Sep 17 14:42 packetfence-db-dump-2024-09-17_20h12.sql.gz -rw-r--r-- 1 root root 177166667 Sep 17 14:42 packetfence-files-dump-2024-09-17_20h08.tgz -rw-r--r-- 1 root root 1630 Sep 17 14:43 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 14:43 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_20h08.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_20h12.sql into pf ERROR at line 1: Unknown command '\-'. Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 7:08 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Ok, Sorry I wasn't clear enough. The problem is on the db backup that has been created on 13.2.0. Please, apply maintenance patches on 13.2.0, not on 14.0.0. The doc is the same for both https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches that is why the previous link used 14.0.0 Sorry for the misdirection. Thank you Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn8LlgQug$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGnipb216g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn13__cHA$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGl2ukdMoQ$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 9:26 AM To: Goimard, Jeremy Cc: pac...@li...<mailto:pac...@li...> Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit. service with SysV service script with /lib/systemd/systemd-sysv-install. ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1138 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 997 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 root@packetfence:~# systemctl stop packetfence-config root@packetfence:~# apt update Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security InRelease Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm InRelease Hit:4 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm-updates InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 10 packages can be upgraded. Run 'apt list --upgradable' to see them. W: http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the DEPRECATION section in apt-key(8) for details. root@packetfence:~# root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done Some packages could not be installed. This may mean that you have requested an impossible situation or if you are using the unstable distribution that some required packages have not yet been created or been moved out of Incoming. The following information may help to resolve the situation: The following packages have unmet dependencies: netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed E: Broken packages root@packetfence:~# apt-mark hold netdata netdata set on hold. root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done The following packages have been kept back: netdata packetfence The following packages will be upgraded: git git-man packetfence-archive-keyring packetfence-config packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid packetfence-redis-cache 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. Need to get 54.4 MB of archives. After this operation, 428 kB of additional disk space will be used. Do you want to continue? [Y/n] y Get:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] Get:2 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-archive-keyring all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-config all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-golang-daemon amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-redis-cache all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] Fetched 54.4 MB in 13s (4,027 kB/s) Reading changelogs... Done (Reading database ... 124611 files and directories currently installed.) Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 Unpacking packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Setting up packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Synchronizing state of redis-server.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable redis-server Setting up packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... pfconfig.conf already exists, won't touch it! Setting up packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up git-man (1:2.39.5-0+deb12u1) ... Setting up git (1:2.39.5-0+deb12u1) ... Processing triggers for man-db (2.11.2-2) ... root@packetfence:~# root@packetfence:~# root@packetfence:~# root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.DZrE5kSBrD ~ ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Please continue to use the sourceforge list. No private help if you are not a client. That been wrote, you need to apply maintenance patches first (https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due to that https://github.com/inverse-inc/packetfence/issues/8105<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which as been fixed. Thanks Regards. Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 2:20:18 AM To: Goimard, Jeremy Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14. 0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14.0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to add the IP address and copied the export.tdz from the source. root@packetfence:/usr/local/pf/conf# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.VG977Nk5tp /usr/local/pf/conf ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory Thanks, - Arun On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li...<mailto:pac...@li...> Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Yannik S. <ya...@se...> - 2024-09-18 10:36:46
|
Hi Andrey, I guess you could completely create your own rsyslog config by putting it in a different file (/etc/rsyslog.d/my-custom-syslog.conf). Apart from this, extending the the syslogtag field length seems like something that should be fixed in upstream. *Could you open a PR for this?* Perhaps the SYSLOG.ident field can be added in upstream too, if it makes sense. I don't know what that contains - googling "rsyslog syslog.ident" did not yield any useful results. Best regards Yannik On 18.09.24 10:50, Andrey Chernyakov via PacketFence-users wrote: > Hello PacketFence community, > > I am currently configuring |rsyslog| on a server running PacketFence > to forward log messages with a custom template that extends the > |syslogtag| to 64 characters and adds a |SYSLOG.ident| field. The > configuration works fine, but every time I restart the > |rsyslog| service, my custom configuration gets overridden. > > *Details:* > > * PacketFence Version: 13.1 > * OS: Debian 11 (deployed from PacketFence ZEN appliance image) > * Rsyslog Configuration: I'm using a custom template in > |/etc/rsyslog.d/packetfence.conf| that looks like this: > > $template ForwardedMessageTemplate,"%timegenerated% %HOSTNAME% SYSLOG.ident %syslogtag:1:64%%msg%\n" > @@192.168.1.100:514;ForwardedMessageTemplate > > * Issue: After restarting |rsyslog|, the custom configuration is > replaced, and the default settings are applied. Is there a > recommended approach for preserving |rsyslog| configurations > across service restarts in a PacketFence setup? > > By default, the |syslogtag| message is limited to 32 characters. This > limitation is evident in log entries such as: > > * |api-frontend-docker-wrapper[1587| > * |radiusd-load-balancer-docker-wra| > > > I'd appreciate any insights or best practices from the community. > Thanks in advance! > > > -- > Andrey Chernyakov > Senior Network and Security Engineer > > email: che...@np... > phone: (+352) 621260657 > > NPS Consult S.A. > L-5687, Dalheim > Luxembourg > > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users |
From: Andrey C. <che...@np...> - 2024-09-18 09:18:58
|
Hello PacketFence community, I am currently configuring rsyslog on a server running PacketFence to forward log messages with a custom template that extends the syslogtag to 64 characters and adds a SYSLOG.ident field. The configuration works fine, but every time I restart the rsyslog service, my custom configuration gets overridden. Details: • PacketFence Version: 13.1 • OS: Debian 11 (deployed from PacketFence ZEN appliance image) • Rsyslog Configuration: I'm using a custom template in /etc/rsyslog.d/packetfence.conf that looks like this: $template ForwardedMessageTemplate,"%timegenerated% %HOSTNAME% SYSLOG.ident %syslogtag:1:64%%msg%\n" @@192.168.1.100:514;ForwardedMessageTemplate • Issue: After restarting rsyslog, the custom configuration is replaced, and the default settings are applied. Is there a recommended approach for preserving rsyslog configurations across service restarts in a PacketFence setup? By default, the syslogtag message is limited to 32 characters. This limitation is evident in log entries such as: • api-frontend-docker-wrapper[1587 • radiusd-load-balancer-docker-wra I'd appreciate any insights or best practices from the community. Thanks in advance! -- Andrey Chernyakov Senior Network and Security Engineer email: che...@np... phone: (+352) 621260657 NPS Consult S.A. L-5687, Dalheim Luxembourg |
From: Arun K. <ak...@gm...> - 2024-09-18 06:27:48
|
/*M!999999\- enable the sandbox mode */ -- MariaDB dump 10.19 Distrib 10.5.26-MariaDB, for debian-linux-gnu (x86_64) -- -- Host: localhost Database: pf -- ------------------------------------------------------ -- Server version 10.5.24-MariaDB-1:10.5.24+maria~deb11 /*!40101 SET @OLD_CHARACTER_SET_CLIENT=@@CHARACTER_SET_CLIENT */; /*!40101 SET @OLD_CHARACTER_SET_RESULTS=@@CHARACTER_SET_RESULTS */; /*!40101 SET @OLD_COLLATION_CONNECTION=@@COLLATION_CONNECTION */; /*!40101 SET NAMES utf8mb4 */; /*!40103 SET @OLD_TIME_ZONE=@@TIME_ZONE */; /*!40103 SET TIME_ZONE='+00:00' */; /*!40014 SET @OLD_UNIQUE_CHECKS=@@UNIQUE_CHECKS, UNIQUE_CHECKS=0 */; /*!40014 SET @OLD_FOREIGN_KEY_CHECKS=@@FOREIGN_KEY_CHECKS, FOREIGN_KEY_CHECKS=0 */; /*!40101 SET @OLD_SQL_MODE=@@SQL_MODE, SQL_MODE='NO_AUTO_VALUE_ON_ZERO' */; /*!40111 SET @OLD_SQL_NOTES=@@SQL_NOTES, SQL_NOTES=0 */; -- -- Table structure for table `action` -- DROP TABLE IF EXISTS `action`; /*!40101 SET @saved_cs_client = @@character_set_client */; /*!40101 SET character_set_client = utf8 */; CREATE TABLE `action` ( `security_event_id` int(11) NOT NULL, `action` varchar(255) NOT NULL, PRIMARY KEY (`security_event_id`,`action`), CONSTRAINT `FOREIGN` FOREIGN KEY (`security_event_id`) REFERENCES `class` (`security_event_id`) ON DELETE CASCADE ON UPDATE CASCADE ) ENGINE=InnoDB DEFAULT CHARSET=utf8mb4 COLLATE=utf8mb4_general_ci; /*!40101 SET character_set_client = @saved_cs_client */; -- -- Dumping data for table `action` -- LOCK TABLES `action` WRITE; /*!40000 ALTER TABLE `action` DISABLE KEYS */; INSERT IGNORE INTO `action` VALUES (0,'email_admin'),(1100001,'email_admin'),(1100001,'reevaluate_access'),(1100002,'email_admin'),(1100002,'reevaluate_access'),(1100003,'email_ admin'),(1100003,'reevaluate_access'),(1100004,'email_admin'),(1100004,'reevaluate_access'),(1100006,'email_admin'),(1100006,'reevaluate_access'),(1100007,'autoreg'),(1100008,'e mail_admin'),(1100008,'reevaluate_access'),(1100009,'email_admin'),(1100010,'email_admin'),(1100011,'email_admin'),(1100012,'email_admin'),(1100020,'email_admin'),(1100021,'emai l_admin'),(1100022,'email_admin'),(1100023,'email_admin'),(1200001,'reevaluate_access'),(1200002,'reevaluate_access'),(1200003,'reevaluate_access'),(1300000,'reevaluate_access') ,(1300001,'reevaluate_access'),(1300002,'enforce_provisioning'),(1300003,'reevaluate_access'),(1300004,'email_admin'),(1300005,'email_admin'),(1300005,'email_user'),(1300005,'re evaluate_access'),(1300006,'email_admin'),(1300007,'email_admin'),(1300008,'email_admin'),(2000000,'email_admin'),(2000000,'reevaluate_access'),(2000032,'email_admin'),(2001569, 'email_admin'),(2001904,'email_admin'),(2001972,'email_admin'),(2002030,'email_admin'),(2002030,'reevaluate_access'),(2002201,'email_admin'),(3000001,'email_admin'),(3000001,'re evaluate_access'),(3000002,'email_admin'),(3000002,'reevaluate_access'),(3000003,'email_admin'),(3000003,'reevaluate_access'),(3000004,'email_admin'),(3000004,'reevaluate_access '),(3000005,'email_admin'),(3000005,'reevaluate_access'),(3000006,'email_admin'),(3000007,'email_admin'),(3000007,'reevaluate_access'),(3000008,'email_admin'),(3000008,'email_us er'); /*!40000 ALTER TABLE `action` ENABLE KEYS */; UNLOCK TABLES; -- On Tue, Sep 17, 2024 at 9:59 PM Goimard, Jeremy <jeg...@ak...> wrote: > Hi Arum, > > > OK, that is a new one... Never seen that before. > > > Could you share the first 10 to 20 lines of "packetfence-db-dump-2024-09-17_20h12.sql" > ? > > It should not contain sensitive information. > > > It looks like there is something on the beginning of the file that made > this > https://github.com/inverse-inc/packetfence/blob/devel/addons/functions/database.functions#L79 > failing. > > > You should be able to extract it from the 13.2 VM with the following > command line `gunzip /root/backup/packetfence-db-dump-2024-09-17_20h12.sql > .gz` > > > Thank you for your time and patience. > > Regards > > *Jeremy Goimard* > *Senior Software Engineer* > [image: signature_117474225] > *Office:* +1 613 670 8438 > Akamai Technologies - Inverse > 145 Broadway > Cambridge, MA 02142 > Connect with Us: > [image: signature_1388875202] <https://community.akamai.com/> [image: > signature_3364560605] <http://blogs.akamai.com/> [image: > signature_2499095976] <https://twitter.com/akamai> [image: > signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [image: > signature_4082763092] > <http://www.linkedin.com/company/akamai-technologies> [image: > signature_1928680685] > <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > > ------------------------------ > *From:* Arun Kangle <ak...@gm...> > *Sent:* Tuesday, September 17, 2024 11:56:38 AM > *To:* Goimard, Jeremy > *Cc:* pac...@li... > *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 > > Now there is different error root@ packetfence: ~# > /usr/local/pf/addons/full-import/import. sh -f /tmp/export. tgz /tmp/tmp. > 5ivIKXyBON ~ > ================================================================================= > Extracting archive. . . Found > ZjQcmQRYFpfptBannerStart > This Message Is From an Untrusted Sender > You have not previously corresponded with this sender. > > ZjQcmQRYFpfptBannerEnd > Now there is different error > > root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f > /tmp/export.tgz > /tmp/tmp.5ivIKXyBON ~ > > ================================================================================= > Extracting archive... > Found the following content in the archive: > total 345072 > -rw-r--r-- 1 root root 256 Sep 17 14:43 add_files.txt > -rw-r--r-- 1 root root 1175 Sep 17 14:43 grants.sql > -rw-r--r-- 1 root root 163588 Sep 17 14:42 > packetfence-db-dump-2024-09-17_20h12.sql.gz > -rw-r--r-- 1 root root 177166667 Sep 17 14:42 > packetfence-files-dump-2024-09-17_20h08.tgz > -rw-r--r-- 1 root root 1630 Sep 17 14:43 stored_config_files.txt > drwxr-xr-x 3 root root 4096 Sep 17 14:43 usr > > ================================================================================= > Found files dump 'packetfence-files-dump-2024-09-17_20h08.tgz' > Extracting files dump > > ================================================================================= > Found compressed database dump > 'packetfence-db-dump-2024-09-17_20h12.sql.gz' > Uncompressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql' > > ================================================================================= > Get PF version in PacketFence export > 13.2.0 > > ================================================================================= > Stopping PacketFence services > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > > ================================================================================= > The database dump uses mysqldump > > --------------------------------------------------------------------------------- > Recreating database pf > > --------------------------------------------------------------------------------- > Dump file was made without triggers and procedures > Importing bare schema for 13.2 > > --------------------------------------------------------------------------------- > Replacing create statements from the dump and removing drop statements > > --------------------------------------------------------------------------------- > Importing packetfence-db-dump-2024-09-17_20h12.sql into pf > ERROR at line 1: Unknown command '\-'. > Cleaning temporary directory > root@packetfence:~# > > On Tue, Sep 17, 2024 at 7:08 PM Goimard, Jeremy <jeg...@ak...> > wrote: > >> Hi Arum, >> >> >> Ok, Sorry I wasn't clear enough. >> >> >> The problem is on the db backup that has been created on 13.2.0. >> >> Please, apply maintenance patches on 13.2.0, not on 14.0.0. >> >> The doc is the same for both >> https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches >> >> that is why the previous link used 14.0.0 >> >> >> Sorry for the misdirection. >> >> >> Thank you >> >> Regards >> >> *Jeremy Goimard* >> *Senior Software Engineer* >> [image: signature_117474225] >> *Office:* +1 613 670 8438 >> Akamai Technologies - Inverse >> 145 Broadway >> Cambridge, MA 02142 >> Connect with Us: >> [image: signature_1388875202] <https://community.akamai.com/> [image: >> signature_3364560605] <http://blogs.akamai.com/> [image: >> signature_2499095976] >> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn8LlgQug$> >> [image: signature_3425345268] >> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGnipb216g$> >> [image: signature_4082763092] >> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn13__cHA$> >> [image: signature_1928680685] >> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGl2ukdMoQ$> >> >> >> >> ------------------------------ >> *From:* Arun Kangle <ak...@gm...> >> *Sent:* Tuesday, September 17, 2024 9:26 AM >> *To:* Goimard, Jeremy >> *Cc:* pac...@li... >> *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 >> >> Hi Jeremy, I tried the steps given to apply maintenance patch but still >> facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd >> service pf stop Synchronizing state of monit. service with SysV service >> script with /lib/systemd/systemd-sysv-install. >> ZjQcmQRYFpfptBannerStart >> This Message Is From an Untrusted Sender >> You have not previously corresponded with this sender. >> >> ZjQcmQRYFpfptBannerEnd >> Hi Jeremy, >> I tried the steps given to apply maintenance patch but still facing the >> same error: >> >> root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> Service Status PID >> packetfence-api-frontend.service stopped 0 >> packetfence-config.service started 0 >> packetfence-docker-iptables.service disabled 0 >> packetfence-fingerbank-collector.service disabled 0 >> packetfence-galera-autofix.service disabled 0 >> packetfence-haproxy-admin.service stopped 0 >> packetfence-haproxy-db.service disabled 0 >> packetfence-haproxy-portal.service stopped 0 >> packetfence-httpd.aaa.service stopped 0 >> packetfence-httpd.admin_dispatcher.service stopped 0 >> packetfence-httpd.dispatcher.service stopped 0 >> packetfence-httpd.portal.service stopped 0 >> packetfence-httpd.webservices.service stopped 0 >> packetfence-ip6tables.service stopped 0 >> packetfence-iptables.service stopped 0 >> packetfence-kafka.service disabled 0 >> packetfence-keepalived.service stopped 0 >> packetfence-mariadb.service started 1138 >> packetfence-mysql-probe.service disabled 0 >> packetfence-netdata.service stopped 0 >> packetfence-ntlm-auth-api.service disabled 0 >> packetfence-pfacct.service stopped 0 >> packetfence-pfconnector-client.service stopped 0 >> packetfence-pfconnector-server.service stopped 0 >> packetfence-pfcron.service stopped 0 >> packetfence-pfdetect.service disabled 0 >> packetfence-pfdhcp.service stopped 0 >> packetfence-pfdhcplistener.service stopped 0 >> packetfence-pfdns.service stopped 0 >> packetfence-pffilter.service stopped 0 >> packetfence-pfipset.service stopped 0 >> packetfence-pfldapexplorer.service stopped 0 >> packetfence-pfperl-api.service stopped 0 >> packetfence-pfpki.service stopped 0 >> packetfence-pfqueue-backend.service stopped 0 >> packetfence-pfqueue-go.service stopped 0 >> packetfence-pfqueue-perl.service disabled 0 >> packetfence-pfsetacls.service stopped 0 >> packetfence-pfsso.service stopped 0 >> packetfence-pfstats.service stopped 0 >> packetfence-proxysql.service disabled 0 >> packetfence-radiusd-acct.service disabled 0 >> packetfence-radiusd-auth.service stopped 0 >> packetfence-radiusd-cli.service disabled 0 >> packetfence-radiusd-eduroam.service disabled 0 >> packetfence-radiusd-load_balancer.service disabled 0 >> packetfence-radsniff.service stopped 0 >> packetfence-redis-cache.service started 997 >> packetfence-redis_ntlm_cache.service disabled 0 >> packetfence-redis_queue.service stopped 0 >> packetfence-snmptrapd.service disabled 0 >> packetfence-tracking-config.service disabled 1 >> root@packetfence:~# systemctl stop packetfence-config >> >> root@packetfence:~# apt update >> Hit:1 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> >> bookworm-security InRelease >> Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm >> InRelease >> Hit:3 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> >> bookworm InRelease >> Hit:4 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> >> bookworm-updates InRelease >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> 10 packages can be upgraded. Run 'apt list --upgradable' to see them. >> W: >> http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: >> Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the >> DEPRECATION section in apt-key(8) for details. >> root@packetfence:~# >> root@packetfence:~# apt upgrade >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> Calculating upgrade... Done >> Some packages could not be installed. This may mean that you have >> requested an impossible situation or if you are using the unstable >> distribution that some required packages have not yet been created >> or been moved out of Incoming. >> The following information may help to resolve the situation: >> >> The following packages have unmet dependencies: >> netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed >> E: Broken packages >> >> root@packetfence:~# apt-mark hold netdata >> netdata set on hold. >> root@packetfence:~# apt upgrade >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> Calculating upgrade... Done >> The following packages have been kept back: >> netdata packetfence >> The following packages will be upgraded: >> git git-man packetfence-archive-keyring packetfence-config >> packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid >> packetfence-redis-cache >> 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. >> Need to get 54.4 MB of archives. >> After this operation, 428 kB of additional disk space will be used. >> Do you want to continue? [Y/n] y >> Get:1 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> >> bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] >> Get:2 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> >> bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] >> Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-archive-keyring all >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] >> Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-config all >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] >> Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-golang-daemon amd64 >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] >> Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] >> Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] >> Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 >> bookworm/bookworm amd64 packetfence-redis-cache all >> 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] >> Fetched 54.4 MB in 13s (4,027 kB/s) >> Reading changelogs... Done >> (Reading database ... 124611 files and directories currently installed.) >> Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... >> Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... >> Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... >> Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... >> Preparing to unpack >> .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb >> ... >> Unpacking packetfence-archive-keyring >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb >> ... >> Unpacking packetfence-config >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb >> ... >> Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 >> Unpacking packetfence-golang-daemon >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb >> ... >> Unpacking packetfence-ntlm-wrapper >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb >> ... >> Unpacking packetfence-pfcmd-suid >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Preparing to unpack >> .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb >> ... >> Unpacking packetfence-redis-cache >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over >> (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... >> Setting up packetfence-redis-cache >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Synchronizing state of redis-server.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable redis-server >> Setting up packetfence-pfcmd-suid >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Setting up packetfence-config >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> pfconfig.conf already exists, won't touch it! >> Setting up packetfence-ntlm-wrapper >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Setting up packetfence-archive-keyring >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Setting up packetfence-golang-daemon >> (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... >> Setting up git-man (1:2.39.5-0+deb12u1) ... >> Setting up git (1:2.39.5-0+deb12u1) ... >> Processing triggers for man-db (2.11.2-2) ... >> root@packetfence:~# >> root@packetfence:~# >> root@packetfence:~# >> root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f >> /tmp/export.tgz >> /tmp/tmp.DZrE5kSBrD ~ >> >> ================================================================================= >> Extracting archive... >> Found the following content in the archive: >> total 344604 >> -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt >> -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql >> -rw-r--r-- 1 root root 113315 Sep 17 05:13 >> packetfence-db-dump-2024-09-17_10h43.sql.gz >> -rw-r--r-- 1 root root 176971909 Sep 17 05:13 >> packetfence-files-dump-2024-09-17_10h43.tgz >> -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt >> drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr >> >> ================================================================================= >> Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' >> Extracting files dump >> >> ================================================================================= >> Found compressed database dump >> 'packetfence-db-dump-2024-09-17_10h43.sql.gz' >> Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' >> >> ================================================================================= >> Get PF version in PacketFence export >> 13.2.0 >> >> ================================================================================= >> Stopping PacketFence services >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> >> ================================================================================= >> The database dump uses mysqldump >> >> --------------------------------------------------------------------------------- >> Recreating database pf >> >> --------------------------------------------------------------------------------- >> Dump file was made without triggers and procedures >> Importing bare schema for 13.2 >> >> --------------------------------------------------------------------------------- >> Replacing create statements from the dump and removing drop statements >> >> --------------------------------------------------------------------------------- >> Importing packetfence-db-dump-2024-09-17_10h43.sql into pf >> ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' >> Cleaning temporary directory >> root@packetfence:~# >> >> On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...> >> wrote: >> >>> Hi Arum, >>> >>> >>> Please continue to use the sourceforge list. >>> >>> No private help if you are not a client. >>> >>> >>> That been wrote, you need to apply maintenance patches first ( >>> https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due >>> to that https://github.com/inverse-inc/packetfence/issues/8105 >>> <https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which >>> as been fixed. >>> >>> >>> Thanks >>> >>> Regards. >>> >>> *Jeremy Goimard* >>> *Senior Software Engineer* >>> [image: signature_117474225] >>> *Office:* +1 613 670 8438 >>> Akamai Technologies - Inverse >>> 145 Broadway >>> Cambridge, MA 02142 >>> Connect with Us: >>> [image: signature_1388875202] <https://community.akamai.com/> [image: >>> signature_3364560605] <http://blogs.akamai.com/> [image: >>> signature_2499095976] >>> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> >>> [image: signature_3425345268] >>> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> >>> [image: signature_4082763092] >>> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> >>> [image: signature_1928680685] >>> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> >>> >>> ------------------------------ >>> *From:* Arun Kangle <ak...@gm...> >>> *Sent:* Tuesday, September 17, 2024 2:20:18 AM >>> *To:* Goimard, Jeremy >>> *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 >>> >>> Thanks for reply Jeremy, I tried to export / import but getting the >>> following error. Could you please help me? I am using 14. 0 Zen. I did not >>> go through the configurator. After the first boot, I just edited the >>> "interfaces" file to >>> ZjQcmQRYFpfptBannerStart >>> This Message Is From an Untrusted Sender >>> You have not previously corresponded with this sender. >>> >>> ZjQcmQRYFpfptBannerEnd >>> Thanks for reply Jeremy, >>> I tried to export / import but getting the following error. Could you >>> please help me? >>> >>> I am using 14.0 Zen. I did not go through the configurator. After the >>> first boot, I just edited the "interfaces" file to add the IP address and >>> copied the export.tdz from the source. >>> >>> root@packetfence:/usr/local/pf/conf# >>> /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz >>> /tmp/tmp.VG977Nk5tp /usr/local/pf/conf >>> >>> ================================================================================= >>> Extracting archive... >>> Found the following content in the archive: >>> total 344604 >>> -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt >>> -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql >>> -rw-r--r-- 1 root root 113315 Sep 17 05:13 >>> packetfence-db-dump-2024-09-17_10h43.sql.gz >>> -rw-r--r-- 1 root root 176971909 Sep 17 05:13 >>> packetfence-files-dump-2024-09-17_10h43.tgz >>> -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt >>> drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr >>> >>> ================================================================================= >>> Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' >>> Extracting files dump >>> >>> ================================================================================= >>> Found compressed database dump >>> 'packetfence-db-dump-2024-09-17_10h43.sql.gz' >>> Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' >>> >>> ================================================================================= >>> Get PF version in PacketFence export >>> 13.2.0 >>> >>> ================================================================================= >>> Stopping PacketFence services >>> Synchronizing state of monit.service with SysV service script with >>> /lib/systemd/systemd-sysv-install. >>> Executing: /lib/systemd/systemd-sysv-install disable monit >>> >>> ================================================================================= >>> The database dump uses mysqldump >>> >>> --------------------------------------------------------------------------------- >>> Recreating database pf >>> >>> --------------------------------------------------------------------------------- >>> Dump file was made without triggers and procedures >>> Importing bare schema for 13.2 >>> >>> --------------------------------------------------------------------------------- >>> Replacing create statements from the dump and removing drop statements >>> >>> --------------------------------------------------------------------------------- >>> Importing packetfence-db-dump-2024-09-17_10h43.sql into pf >>> ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' >>> Cleaning temporary directory >>> >>> Thanks, >>> - Arun >>> >>> On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...> >>> wrote: >>> >>>> Hi Arun, >>>> >>>> >>>> As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not >>>> Debian 11. >>>> >>>> >>>> So, the upgrade script as is is not working. You will need to >>>> export/import in a new VM. >>>> >>>> >>>> I am currently updating our documentation. >>>> >>>> >>>> Thanks for reporting it and using PacketFence >>>> >>>> Regards >>>> >>>> >>>> *Jeremy Goimard* >>>> *Senior Software Engineer* >>>> [image: signature_117474225] >>>> *Office:* +1 613 670 8438 >>>> Akamai Technologies - Inverse >>>> 145 Broadway >>>> Cambridge, MA 02142 >>>> Connect with Us: >>>> [image: signature_1388875202] <https://community.akamai.com/> [image: >>>> signature_3364560605] <http://blogs.akamai.com/> [image: >>>> signature_2499095976] >>>> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> >>>> [image: signature_3425345268] >>>> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> >>>> [image: signature_4082763092] >>>> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> >>>> [image: signature_1928680685] >>>> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> >>>> >>>> ------------------------------ >>>> *From:* Arun Kangle via PacketFence-users < >>>> pac...@li...> >>>> *Sent:* Monday, September 16, 2024 11:09:39 AM >>>> *To:* pac...@li... >>>> *Cc:* Arun Kangle >>>> *Subject:* [PacketFence-users] Unable to upgrade to 14.0 >>>> >>>> Hi All, Currently I am running 13. 2. 0 version when i run >>>> "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise >>>> the latest version automatically and when i entered 14. 0 manually that too >>>> fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh >>>> ZjQcmQRYFpfptBannerStart >>>> This Message Is From an External Sender >>>> This message came from outside your organization. >>>> >>>> ZjQcmQRYFpfptBannerEnd >>>> Hi All, >>>> Currently I am running 13.2.0 version when i run >>>> "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the >>>> latest version automatically and when i entered 14.0 manually that too >>>> fails. >>>> >>>> root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh >>>> >>>> ================================================================================= >>>> Installing or upgrading the upgrade tools for PacketFence >>>> Hit:1 http://deb.debian.org/debian >>>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>>> bullseye InRelease >>>> Hit:2 http://deb.debian.org/debian >>>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>>> bullseye-updates InRelease >>>> Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye >>>> InRelease >>>> Hit:4 http://security.debian.org/debian-security >>>> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >>>> bullseye-security InRelease >>>> Reading package lists... Done >>>> Building dependency tree... Done >>>> Reading state information... Done >>>> 88 packages can be upgraded. Run 'apt list --upgradable' to see them. >>>> Reading package lists... Done >>>> Building dependency tree... Done >>>> Reading state information... Done >>>> packetfence-upgrade is already the newest version >>>> (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). >>>> The following packages were automatically installed and are no longer >>>> required: >>>> libgnutls-dane0 libunbound8 >>>> Use 'apt autoremove' to remove them. >>>> 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. >>>> >>>> ================================================================================= >>>> Starting upgrade process >>>> >>>> ================================================================================= >>>> Attempting to disable the monit service so it doesn't interfere with >>>> the upgrade >>>> Synchronizing state of monit.service with SysV service script with >>>> /lib/systemd/systemd-sysv-install. >>>> Executing: /lib/systemd/systemd-sysv-install disable monit >>>> Attempting to stop the monit service so it doesn't interfere with the >>>> upgrade >>>> >>>> --------------------------------------------------------------------------------- >>>> Stopping the PacketFence services >>>> Synchronizing state of monit.service with SysV service script with >>>> /lib/systemd/systemd-sysv-install. >>>> Executing: /lib/systemd/systemd-sysv-install disable monit >>>> Service Status PID >>>> packetfence-api-frontend.service stopped 0 >>>> packetfence-config.service started 0 >>>> packetfence-docker-iptables.service disabled 0 >>>> packetfence-fingerbank-collector.service disabled 0 >>>> packetfence-galera-autofix.service disabled 0 >>>> packetfence-haproxy-admin.service stopped 0 >>>> packetfence-haproxy-db.service disabled 0 >>>> packetfence-haproxy-portal.service stopped 0 >>>> packetfence-httpd.aaa.service stopped 0 >>>> packetfence-httpd.admin_dispatcher.service stopped 0 >>>> packetfence-httpd.dispatcher.service stopped 0 >>>> packetfence-httpd.portal.service stopped 0 >>>> packetfence-httpd.webservices.service stopped 0 >>>> packetfence-ip6tables.service stopped 0 >>>> packetfence-iptables.service stopped 0 >>>> packetfence-kafka.service disabled 0 >>>> packetfence-keepalived.service stopped 0 >>>> packetfence-mariadb.service started 1992 >>>> packetfence-mysql-probe.service disabled 0 >>>> packetfence-netdata.service stopped 0 >>>> packetfence-ntlm-auth-api.service disabled 0 >>>> packetfence-pfacct.service stopped 0 >>>> packetfence-pfconnector-client.service stopped 0 >>>> packetfence-pfconnector-server.service stopped 0 >>>> packetfence-pfcron.service stopped 0 >>>> packetfence-pfdetect.service disabled 0 >>>> packetfence-pfdhcp.service stopped 0 >>>> packetfence-pfdhcplistener.service stopped 0 >>>> packetfence-pfdns.service stopped 0 >>>> packetfence-pffilter.service stopped 0 >>>> packetfence-pfipset.service stopped 0 >>>> packetfence-pfldapexplorer.service stopped 0 >>>> packetfence-pfperl-api.service stopped 0 >>>> packetfence-pfpki.service stopped 0 >>>> packetfence-pfqueue-backend.service stopped 0 >>>> packetfence-pfqueue-go.service stopped 0 >>>> packetfence-pfqueue-perl.service disabled 0 >>>> packetfence-pfsetacls.service stopped 0 >>>> packetfence-pfsso.service stopped 0 >>>> packetfence-pfstats.service stopped 0 >>>> packetfence-proxysql.service disabled 0 >>>> packetfence-radiusd-acct.service disabled 0 >>>> packetfence-radiusd-auth.service stopped 0 >>>> packetfence-radiusd-cli.service disabled 0 >>>> packetfence-radiusd-eduroam.service disabled 0 >>>> packetfence-radiusd-load_balancer.service disabled 0 >>>> packetfence-radsniff.service stopped 0 >>>> packetfence-redis-cache.service started 1817 >>>> packetfence-redis_ntlm_cache.service disabled 0 >>>> packetfence-redis_queue.service stopped 0 >>>> packetfence-snmptrapd.service disabled 0 >>>> packetfence-tracking-config.service disabled 1 >>>> >>>> ================================================================================= >>>> Generating full pre-upgrade backup to >>>> /root/packetfence-pre-upgrade-backup-1726498856.tgz >>>> /root/backup/ , folder already created. >>>> >>>> packetfence-files-dump have been created in /root/backup/ >>>> >>>> packetfence-files-dump older than 7 days have been removed. >>>> >>>> Database backup will start >>>> Not a Galera cluster, nothing to stop >>>> mysqldump completed >>>> Not a Galera cluster, nothing to reenable >>>> /tmp/tmp.MfRZFp07Eq /usr/local/pf >>>> >>>> ================================================================================= >>>> Copying dump files to temporary export directory >>>> Database dump uses mysqldump. Exporting the grants from the database. >>>> Enter the MariaDB root password if prompted to >>>> >>>> ================================================================================= >>>> Building list of configuration files for this current version >>>> >>>> ================================================================================= >>>> Computing additional files that are referenced in the configuration >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/admin.conf) >>>> Found reference to external file that is outside the PF directory >>>> (/usr/local/fingerbank/conf/fingerbank.conf) >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/iptables-input.conf.inc) >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/iptables-input-management.conf.inc) >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/ip6tables-input-management.conf.inc) >>>> Found reference to external file that is in the PF directory >>>> (/usr/local/pf/conf/report.conf) >>>> >>>> ================================================================================= >>>> Creating export archive >>>> add_files.txt >>>> grants.sql >>>> packetfence-db-dump-2024-09-16_20h32.sql.gz >>>> packetfence-files-dump-2024-09-16_20h30.tgz >>>> stored_config_files.txt >>>> usr/ >>>> usr/local/ >>>> usr/local/fingerbank/ >>>> usr/local/fingerbank/conf/ >>>> usr/local/fingerbank/conf/fingerbank.conf >>>> >>>> ================================================================================= >>>> Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz >>>> Cleaning temporary directory >>>> >>>> ================================================================================= >>>> Do you wish to perform the update of the operating system to the latest >>>> available patches during that process? (y/n): y >>>> >>>> ================================================================================= >>>> Backing up git_commit_id >>>> Backing up pf-release >>>> >>>> ================================================================================= >>>> Performing upgrade of the packages >>>> Unable to detect packages to remove >>>> dpkg-query: no packages found matching libmariadb-dev >>>> Unable to detect a libmariadb-dev package, upgrade will continue >>>> % Total % Received % Xferd Average Speed Time Time Time >>>> Current >>>> Dload Upload Total Spent Left >>>> Speed >>>> 100 5 100 5 0 0 2 0 0:00:02 0:00:01 >>>> 0:00:01 2 >>>> The latest stable PacketFence version is 13.2, enter 'y' to upgrade to >>>> this version or 'n' to specify the version manually (y/n): n >>>> Please enter the PacketFence version to which you wish to upgrade: 14.0 >>>> Hit:1 http://security.debian.org/debian-security >>>> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >>>> bullseye-security InRelease >>>> Hit:2 http://deb.debian.org/debian >>>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>>> bullseye InRelease >>>> Hit:3 http://deb.debian.org/debian >>>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>>> bullseye-updates InRelease >>>> Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >>>> InRelease >>>> Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >>>> Release >>>> 404 Not Found [IP: 192.95.20.194 80] >>>> Reading package lists... Done >>>> E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 >>>> bullseye Release' does not have a Release file. >>>> N: Updating from such a repository can't be done securely, and is >>>> therefore disabled by default. >>>> N: See apt-secure(8) manpage for repository creation and user >>>> configuration details. >>>> root@guestpf:/# >>>> >>>> Am I missing anything? >>>> Thanks in advance, >>>> - Arun >>>> >>> |
From: Goimard, J. <jeg...@ak...> - 2024-09-17 16:29:58
|
Hi Arum, OK, that is a new one... Never seen that before. Could you share the first 10 to 20 lines of "packetfence-db-dump-2024-09-17_20h12.sql" ? It should not contain sensitive information. It looks like there is something on the beginning of the file that made this https://github.com/inverse-inc/packetfence/blob/devel/addons/functions/database.functions#L79 failing. You should be able to extract it from the 13.2 VM with the following command line `gunzip /root/backup/packetfence-db-dump-2024-09-17_20h12.sql.gz` Thank you for your time and patience. Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle <ak...@gm...> Sent: Tuesday, September 17, 2024 11:56:38 AM To: Goimard, Jeremy Cc: pac...@li... Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Now there is different error root@ packetfence: ~# /usr/local/pf/addons/full-import/import. sh -f /tmp/export. tgz /tmp/tmp. 5ivIKXyBON ~ ================================================================================= Extracting archive. . . Found ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Now there is different error root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.5ivIKXyBON ~ ================================================================================= Extracting archive... Found the following content in the archive: total 345072 -rw-r--r-- 1 root root 256 Sep 17 14:43 add_files.txt -rw-r--r-- 1 root root 1175 Sep 17 14:43 grants.sql -rw-r--r-- 1 root root 163588 Sep 17 14:42 packetfence-db-dump-2024-09-17_20h12.sql.gz -rw-r--r-- 1 root root 177166667 Sep 17 14:42 packetfence-files-dump-2024-09-17_20h08.tgz -rw-r--r-- 1 root root 1630 Sep 17 14:43 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 14:43 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_20h08.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_20h12.sql into pf ERROR at line 1: Unknown command '\-'. Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 7:08 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Ok, Sorry I wasn't clear enough. The problem is on the db backup that has been created on 13.2.0. Please, apply maintenance patches on 13.2.0, not on 14.0.0. The doc is the same for both https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches that is why the previous link used 14.0.0 Sorry for the misdirection. Thank you Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn8LlgQug$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGnipb216g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGn13__cHA$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!S2XtJJK3LHait4JMrx0UUHFuRS6bS9qFNP2j7GoWEDAYhrfFarl1yQdApGgZWuc6TDwrSGl2ukdMoQ$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 9:26 AM To: Goimard, Jeremy Cc: pac...@li...<mailto:pac...@li...> Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit. service with SysV service script with /lib/systemd/systemd-sysv-install. ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1138 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 997 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 root@packetfence:~# systemctl stop packetfence-config root@packetfence:~# apt update Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security InRelease Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm InRelease Hit:4 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm-updates InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 10 packages can be upgraded. Run 'apt list --upgradable' to see them. W: http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the DEPRECATION section in apt-key(8) for details. root@packetfence:~# root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done Some packages could not be installed. This may mean that you have requested an impossible situation or if you are using the unstable distribution that some required packages have not yet been created or been moved out of Incoming. The following information may help to resolve the situation: The following packages have unmet dependencies: netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed E: Broken packages root@packetfence:~# apt-mark hold netdata netdata set on hold. root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done The following packages have been kept back: netdata packetfence The following packages will be upgraded: git git-man packetfence-archive-keyring packetfence-config packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid packetfence-redis-cache 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. Need to get 54.4 MB of archives. After this operation, 428 kB of additional disk space will be used. Do you want to continue? [Y/n] y Get:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] Get:2 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-archive-keyring all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-config all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-golang-daemon amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-redis-cache all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] Fetched 54.4 MB in 13s (4,027 kB/s) Reading changelogs... Done (Reading database ... 124611 files and directories currently installed.) Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 Unpacking packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Setting up packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Synchronizing state of redis-server.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable redis-server Setting up packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... pfconfig.conf already exists, won't touch it! Setting up packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up git-man (1:2.39.5-0+deb12u1) ... Setting up git (1:2.39.5-0+deb12u1) ... Processing triggers for man-db (2.11.2-2) ... root@packetfence:~# root@packetfence:~# root@packetfence:~# root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.DZrE5kSBrD ~ ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Please continue to use the sourceforge list. No private help if you are not a client. That been wrote, you need to apply maintenance patches first (https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due to that https://github.com/inverse-inc/packetfence/issues/8105<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which as been fixed. Thanks Regards. Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 2:20:18 AM To: Goimard, Jeremy Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14. 0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14.0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to add the IP address and copied the export.tdz from the source. root@packetfence:/usr/local/pf/conf# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.VG977Nk5tp /usr/local/pf/conf ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory Thanks, - Arun On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li...<mailto:pac...@li...> Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Arun K. <ak...@gm...> - 2024-09-17 15:57:01
|
Now there is different error root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.5ivIKXyBON ~ ================================================================================= Extracting archive... Found the following content in the archive: total 345072 -rw-r--r-- 1 root root 256 Sep 17 14:43 add_files.txt -rw-r--r-- 1 root root 1175 Sep 17 14:43 grants.sql -rw-r--r-- 1 root root 163588 Sep 17 14:42 packetfence-db-dump-2024-09-17_20h12.sql.gz -rw-r--r-- 1 root root 177166667 Sep 17 14:42 packetfence-files-dump-2024-09-17_20h08.tgz -rw-r--r-- 1 root root 1630 Sep 17 14:43 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 14:43 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_20h08.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_20h12.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_20h12.sql into pf ERROR at line 1: Unknown command '\-'. Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 7:08 PM Goimard, Jeremy <jeg...@ak...> wrote: > Hi Arum, > > > Ok, Sorry I wasn't clear enough. > > > The problem is on the db backup that has been created on 13.2.0. > > Please, apply maintenance patches on 13.2.0, not on 14.0.0. > > The doc is the same for both > https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches > > that is why the previous link used 14.0.0 > > > Sorry for the misdirection. > > > Thank you > > Regards > > *Jeremy Goimard* > *Senior Software Engineer* > [image: signature_117474225] > *Office:* +1 613 670 8438 > Akamai Technologies - Inverse > 145 Broadway > Cambridge, MA 02142 > Connect with Us: > [image: signature_1388875202] <https://community.akamai.com/> [image: > signature_3364560605] <http://blogs.akamai.com/> [image: > signature_2499095976] <https://twitter.com/akamai> [image: > signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [image: > signature_4082763092] > <http://www.linkedin.com/company/akamai-technologies> [image: > signature_1928680685] > <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > > > > ------------------------------ > *From:* Arun Kangle <ak...@gm...> > *Sent:* Tuesday, September 17, 2024 9:26 AM > *To:* Goimard, Jeremy > *Cc:* pac...@li... > *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 > > Hi Jeremy, I tried the steps given to apply maintenance patch but still > facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd > service pf stop Synchronizing state of monit. service with SysV service > script with /lib/systemd/systemd-sysv-install. > ZjQcmQRYFpfptBannerStart > This Message Is From an Untrusted Sender > You have not previously corresponded with this sender. > > ZjQcmQRYFpfptBannerEnd > Hi Jeremy, > I tried the steps given to apply maintenance patch but still facing the > same error: > > root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > Service Status PID > packetfence-api-frontend.service stopped 0 > packetfence-config.service started 0 > packetfence-docker-iptables.service disabled 0 > packetfence-fingerbank-collector.service disabled 0 > packetfence-galera-autofix.service disabled 0 > packetfence-haproxy-admin.service stopped 0 > packetfence-haproxy-db.service disabled 0 > packetfence-haproxy-portal.service stopped 0 > packetfence-httpd.aaa.service stopped 0 > packetfence-httpd.admin_dispatcher.service stopped 0 > packetfence-httpd.dispatcher.service stopped 0 > packetfence-httpd.portal.service stopped 0 > packetfence-httpd.webservices.service stopped 0 > packetfence-ip6tables.service stopped 0 > packetfence-iptables.service stopped 0 > packetfence-kafka.service disabled 0 > packetfence-keepalived.service stopped 0 > packetfence-mariadb.service started 1138 > packetfence-mysql-probe.service disabled 0 > packetfence-netdata.service stopped 0 > packetfence-ntlm-auth-api.service disabled 0 > packetfence-pfacct.service stopped 0 > packetfence-pfconnector-client.service stopped 0 > packetfence-pfconnector-server.service stopped 0 > packetfence-pfcron.service stopped 0 > packetfence-pfdetect.service disabled 0 > packetfence-pfdhcp.service stopped 0 > packetfence-pfdhcplistener.service stopped 0 > packetfence-pfdns.service stopped 0 > packetfence-pffilter.service stopped 0 > packetfence-pfipset.service stopped 0 > packetfence-pfldapexplorer.service stopped 0 > packetfence-pfperl-api.service stopped 0 > packetfence-pfpki.service stopped 0 > packetfence-pfqueue-backend.service stopped 0 > packetfence-pfqueue-go.service stopped 0 > packetfence-pfqueue-perl.service disabled 0 > packetfence-pfsetacls.service stopped 0 > packetfence-pfsso.service stopped 0 > packetfence-pfstats.service stopped 0 > packetfence-proxysql.service disabled 0 > packetfence-radiusd-acct.service disabled 0 > packetfence-radiusd-auth.service stopped 0 > packetfence-radiusd-cli.service disabled 0 > packetfence-radiusd-eduroam.service disabled 0 > packetfence-radiusd-load_balancer.service disabled 0 > packetfence-radsniff.service stopped 0 > packetfence-redis-cache.service started 997 > packetfence-redis_ntlm_cache.service disabled 0 > packetfence-redis_queue.service stopped 0 > packetfence-snmptrapd.service disabled 0 > packetfence-tracking-config.service disabled 1 > root@packetfence:~# systemctl stop packetfence-config > > root@packetfence:~# apt update > Hit:1 http://security.debian.org/debian-security > <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> > bookworm-security InRelease > Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm > InRelease > Hit:3 http://deb.debian.org/debian > <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> > bookworm InRelease > Hit:4 http://deb.debian.org/debian > <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> > bookworm-updates InRelease > Reading package lists... Done > Building dependency tree... Done > Reading state information... Done > 10 packages can be upgraded. Run 'apt list --upgradable' to see them. > W: > http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: > Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the > DEPRECATION section in apt-key(8) for details. > root@packetfence:~# > root@packetfence:~# apt upgrade > Reading package lists... Done > Building dependency tree... Done > Reading state information... Done > Calculating upgrade... Done > Some packages could not be installed. This may mean that you have > requested an impossible situation or if you are using the unstable > distribution that some required packages have not yet been created > or been moved out of Incoming. > The following information may help to resolve the situation: > > The following packages have unmet dependencies: > netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed > E: Broken packages > > root@packetfence:~# apt-mark hold netdata > netdata set on hold. > root@packetfence:~# apt upgrade > Reading package lists... Done > Building dependency tree... Done > Reading state information... Done > Calculating upgrade... Done > The following packages have been kept back: > netdata packetfence > The following packages will be upgraded: > git git-man packetfence-archive-keyring packetfence-config > packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid > packetfence-redis-cache > 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. > Need to get 54.4 MB of archives. > After this operation, 428 kB of additional disk space will be used. > Do you want to continue? [Y/n] y > Get:1 http://security.debian.org/debian-security > <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> > bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] > Get:2 http://security.debian.org/debian-security > <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> > bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] > Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-archive-keyring all > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] > Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-config all > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] > Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-golang-daemon amd64 > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] > Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] > Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] > Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 > bookworm/bookworm amd64 packetfence-redis-cache all > 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] > Fetched 54.4 MB in 13s (4,027 kB/s) > Reading changelogs... Done > (Reading database ... 124611 files and directories currently installed.) > Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... > Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... > Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... > Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... > Preparing to unpack > .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb > ... > Unpacking packetfence-archive-keyring > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb > ... > Unpacking packetfence-config > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb > ... > Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 > Unpacking packetfence-golang-daemon > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb > ... > Unpacking packetfence-ntlm-wrapper > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb > ... > Unpacking packetfence-pfcmd-suid > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Preparing to unpack > .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb > ... > Unpacking packetfence-redis-cache > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over > (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... > Setting up packetfence-redis-cache > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Synchronizing state of redis-server.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable redis-server > Setting up packetfence-pfcmd-suid > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Setting up packetfence-config > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > pfconfig.conf already exists, won't touch it! > Setting up packetfence-ntlm-wrapper > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Setting up packetfence-archive-keyring > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Setting up packetfence-golang-daemon > (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... > Setting up git-man (1:2.39.5-0+deb12u1) ... > Setting up git (1:2.39.5-0+deb12u1) ... > Processing triggers for man-db (2.11.2-2) ... > root@packetfence:~# > root@packetfence:~# > root@packetfence:~# > root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f > /tmp/export.tgz > /tmp/tmp.DZrE5kSBrD ~ > > ================================================================================= > Extracting archive... > Found the following content in the archive: > total 344604 > -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt > -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql > -rw-r--r-- 1 root root 113315 Sep 17 05:13 > packetfence-db-dump-2024-09-17_10h43.sql.gz > -rw-r--r-- 1 root root 176971909 Sep 17 05:13 > packetfence-files-dump-2024-09-17_10h43.tgz > -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt > drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr > > ================================================================================= > Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' > Extracting files dump > > ================================================================================= > Found compressed database dump > 'packetfence-db-dump-2024-09-17_10h43.sql.gz' > Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' > > ================================================================================= > Get PF version in PacketFence export > 13.2.0 > > ================================================================================= > Stopping PacketFence services > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > > ================================================================================= > The database dump uses mysqldump > > --------------------------------------------------------------------------------- > Recreating database pf > > --------------------------------------------------------------------------------- > Dump file was made without triggers and procedures > Importing bare schema for 13.2 > > --------------------------------------------------------------------------------- > Replacing create statements from the dump and removing drop statements > > --------------------------------------------------------------------------------- > Importing packetfence-db-dump-2024-09-17_10h43.sql into pf > ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' > Cleaning temporary directory > root@packetfence:~# > > On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...> > wrote: > >> Hi Arum, >> >> >> Please continue to use the sourceforge list. >> >> No private help if you are not a client. >> >> >> That been wrote, you need to apply maintenance patches first ( >> https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due >> to that https://github.com/inverse-inc/packetfence/issues/8105 >> <https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which >> as been fixed. >> >> >> Thanks >> >> Regards. >> >> *Jeremy Goimard* >> *Senior Software Engineer* >> [image: signature_117474225] >> *Office:* +1 613 670 8438 >> Akamai Technologies - Inverse >> 145 Broadway >> Cambridge, MA 02142 >> Connect with Us: >> [image: signature_1388875202] <https://community.akamai.com/> [image: >> signature_3364560605] <http://blogs.akamai.com/> [image: >> signature_2499095976] >> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> >> [image: signature_3425345268] >> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> >> [image: signature_4082763092] >> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> >> [image: signature_1928680685] >> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> >> >> ------------------------------ >> *From:* Arun Kangle <ak...@gm...> >> *Sent:* Tuesday, September 17, 2024 2:20:18 AM >> *To:* Goimard, Jeremy >> *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 >> >> Thanks for reply Jeremy, I tried to export / import but getting the >> following error. Could you please help me? I am using 14. 0 Zen. I did not >> go through the configurator. After the first boot, I just edited the >> "interfaces" file to >> ZjQcmQRYFpfptBannerStart >> This Message Is From an Untrusted Sender >> You have not previously corresponded with this sender. >> >> ZjQcmQRYFpfptBannerEnd >> Thanks for reply Jeremy, >> I tried to export / import but getting the following error. Could you >> please help me? >> >> I am using 14.0 Zen. I did not go through the configurator. After the >> first boot, I just edited the "interfaces" file to add the IP address and >> copied the export.tdz from the source. >> >> root@packetfence:/usr/local/pf/conf# >> /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz >> /tmp/tmp.VG977Nk5tp /usr/local/pf/conf >> >> ================================================================================= >> Extracting archive... >> Found the following content in the archive: >> total 344604 >> -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt >> -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql >> -rw-r--r-- 1 root root 113315 Sep 17 05:13 >> packetfence-db-dump-2024-09-17_10h43.sql.gz >> -rw-r--r-- 1 root root 176971909 Sep 17 05:13 >> packetfence-files-dump-2024-09-17_10h43.tgz >> -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt >> drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr >> >> ================================================================================= >> Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' >> Extracting files dump >> >> ================================================================================= >> Found compressed database dump >> 'packetfence-db-dump-2024-09-17_10h43.sql.gz' >> Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' >> >> ================================================================================= >> Get PF version in PacketFence export >> 13.2.0 >> >> ================================================================================= >> Stopping PacketFence services >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> >> ================================================================================= >> The database dump uses mysqldump >> >> --------------------------------------------------------------------------------- >> Recreating database pf >> >> --------------------------------------------------------------------------------- >> Dump file was made without triggers and procedures >> Importing bare schema for 13.2 >> >> --------------------------------------------------------------------------------- >> Replacing create statements from the dump and removing drop statements >> >> --------------------------------------------------------------------------------- >> Importing packetfence-db-dump-2024-09-17_10h43.sql into pf >> ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' >> Cleaning temporary directory >> >> Thanks, >> - Arun >> >> On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...> >> wrote: >> >>> Hi Arun, >>> >>> >>> As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not >>> Debian 11. >>> >>> >>> So, the upgrade script as is is not working. You will need to >>> export/import in a new VM. >>> >>> >>> I am currently updating our documentation. >>> >>> >>> Thanks for reporting it and using PacketFence >>> >>> Regards >>> >>> >>> *Jeremy Goimard* >>> *Senior Software Engineer* >>> [image: signature_117474225] >>> *Office:* +1 613 670 8438 >>> Akamai Technologies - Inverse >>> 145 Broadway >>> Cambridge, MA 02142 >>> Connect with Us: >>> [image: signature_1388875202] <https://community.akamai.com/> [image: >>> signature_3364560605] <http://blogs.akamai.com/> [image: >>> signature_2499095976] >>> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> >>> [image: signature_3425345268] >>> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> >>> [image: signature_4082763092] >>> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> >>> [image: signature_1928680685] >>> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> >>> >>> ------------------------------ >>> *From:* Arun Kangle via PacketFence-users < >>> pac...@li...> >>> *Sent:* Monday, September 16, 2024 11:09:39 AM >>> *To:* pac...@li... >>> *Cc:* Arun Kangle >>> *Subject:* [PacketFence-users] Unable to upgrade to 14.0 >>> >>> Hi All, Currently I am running 13. 2. 0 version when i run >>> "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise >>> the latest version automatically and when i entered 14. 0 manually that too >>> fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh >>> ZjQcmQRYFpfptBannerStart >>> This Message Is From an External Sender >>> This message came from outside your organization. >>> >>> ZjQcmQRYFpfptBannerEnd >>> Hi All, >>> Currently I am running 13.2.0 version when i run >>> "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the >>> latest version automatically and when i entered 14.0 manually that too >>> fails. >>> >>> root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh >>> >>> ================================================================================= >>> Installing or upgrading the upgrade tools for PacketFence >>> Hit:1 http://deb.debian.org/debian >>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>> bullseye InRelease >>> Hit:2 http://deb.debian.org/debian >>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>> bullseye-updates InRelease >>> Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye >>> InRelease >>> Hit:4 http://security.debian.org/debian-security >>> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >>> bullseye-security InRelease >>> Reading package lists... Done >>> Building dependency tree... Done >>> Reading state information... Done >>> 88 packages can be upgraded. Run 'apt list --upgradable' to see them. >>> Reading package lists... Done >>> Building dependency tree... Done >>> Reading state information... Done >>> packetfence-upgrade is already the newest version >>> (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). >>> The following packages were automatically installed and are no longer >>> required: >>> libgnutls-dane0 libunbound8 >>> Use 'apt autoremove' to remove them. >>> 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. >>> >>> ================================================================================= >>> Starting upgrade process >>> >>> ================================================================================= >>> Attempting to disable the monit service so it doesn't interfere with the >>> upgrade >>> Synchronizing state of monit.service with SysV service script with >>> /lib/systemd/systemd-sysv-install. >>> Executing: /lib/systemd/systemd-sysv-install disable monit >>> Attempting to stop the monit service so it doesn't interfere with the >>> upgrade >>> >>> --------------------------------------------------------------------------------- >>> Stopping the PacketFence services >>> Synchronizing state of monit.service with SysV service script with >>> /lib/systemd/systemd-sysv-install. >>> Executing: /lib/systemd/systemd-sysv-install disable monit >>> Service Status PID >>> packetfence-api-frontend.service stopped 0 >>> packetfence-config.service started 0 >>> packetfence-docker-iptables.service disabled 0 >>> packetfence-fingerbank-collector.service disabled 0 >>> packetfence-galera-autofix.service disabled 0 >>> packetfence-haproxy-admin.service stopped 0 >>> packetfence-haproxy-db.service disabled 0 >>> packetfence-haproxy-portal.service stopped 0 >>> packetfence-httpd.aaa.service stopped 0 >>> packetfence-httpd.admin_dispatcher.service stopped 0 >>> packetfence-httpd.dispatcher.service stopped 0 >>> packetfence-httpd.portal.service stopped 0 >>> packetfence-httpd.webservices.service stopped 0 >>> packetfence-ip6tables.service stopped 0 >>> packetfence-iptables.service stopped 0 >>> packetfence-kafka.service disabled 0 >>> packetfence-keepalived.service stopped 0 >>> packetfence-mariadb.service started 1992 >>> packetfence-mysql-probe.service disabled 0 >>> packetfence-netdata.service stopped 0 >>> packetfence-ntlm-auth-api.service disabled 0 >>> packetfence-pfacct.service stopped 0 >>> packetfence-pfconnector-client.service stopped 0 >>> packetfence-pfconnector-server.service stopped 0 >>> packetfence-pfcron.service stopped 0 >>> packetfence-pfdetect.service disabled 0 >>> packetfence-pfdhcp.service stopped 0 >>> packetfence-pfdhcplistener.service stopped 0 >>> packetfence-pfdns.service stopped 0 >>> packetfence-pffilter.service stopped 0 >>> packetfence-pfipset.service stopped 0 >>> packetfence-pfldapexplorer.service stopped 0 >>> packetfence-pfperl-api.service stopped 0 >>> packetfence-pfpki.service stopped 0 >>> packetfence-pfqueue-backend.service stopped 0 >>> packetfence-pfqueue-go.service stopped 0 >>> packetfence-pfqueue-perl.service disabled 0 >>> packetfence-pfsetacls.service stopped 0 >>> packetfence-pfsso.service stopped 0 >>> packetfence-pfstats.service stopped 0 >>> packetfence-proxysql.service disabled 0 >>> packetfence-radiusd-acct.service disabled 0 >>> packetfence-radiusd-auth.service stopped 0 >>> packetfence-radiusd-cli.service disabled 0 >>> packetfence-radiusd-eduroam.service disabled 0 >>> packetfence-radiusd-load_balancer.service disabled 0 >>> packetfence-radsniff.service stopped 0 >>> packetfence-redis-cache.service started 1817 >>> packetfence-redis_ntlm_cache.service disabled 0 >>> packetfence-redis_queue.service stopped 0 >>> packetfence-snmptrapd.service disabled 0 >>> packetfence-tracking-config.service disabled 1 >>> >>> ================================================================================= >>> Generating full pre-upgrade backup to >>> /root/packetfence-pre-upgrade-backup-1726498856.tgz >>> /root/backup/ , folder already created. >>> >>> packetfence-files-dump have been created in /root/backup/ >>> >>> packetfence-files-dump older than 7 days have been removed. >>> >>> Database backup will start >>> Not a Galera cluster, nothing to stop >>> mysqldump completed >>> Not a Galera cluster, nothing to reenable >>> /tmp/tmp.MfRZFp07Eq /usr/local/pf >>> >>> ================================================================================= >>> Copying dump files to temporary export directory >>> Database dump uses mysqldump. Exporting the grants from the database. >>> Enter the MariaDB root password if prompted to >>> >>> ================================================================================= >>> Building list of configuration files for this current version >>> >>> ================================================================================= >>> Computing additional files that are referenced in the configuration >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/admin.conf) >>> Found reference to external file that is outside the PF directory >>> (/usr/local/fingerbank/conf/fingerbank.conf) >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/iptables-input.conf.inc) >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/iptables-input-management.conf.inc) >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/ip6tables-input-management.conf.inc) >>> Found reference to external file that is in the PF directory >>> (/usr/local/pf/conf/report.conf) >>> >>> ================================================================================= >>> Creating export archive >>> add_files.txt >>> grants.sql >>> packetfence-db-dump-2024-09-16_20h32.sql.gz >>> packetfence-files-dump-2024-09-16_20h30.tgz >>> stored_config_files.txt >>> usr/ >>> usr/local/ >>> usr/local/fingerbank/ >>> usr/local/fingerbank/conf/ >>> usr/local/fingerbank/conf/fingerbank.conf >>> >>> ================================================================================= >>> Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz >>> Cleaning temporary directory >>> >>> ================================================================================= >>> Do you wish to perform the update of the operating system to the latest >>> available patches during that process? (y/n): y >>> >>> ================================================================================= >>> Backing up git_commit_id >>> Backing up pf-release >>> >>> ================================================================================= >>> Performing upgrade of the packages >>> Unable to detect packages to remove >>> dpkg-query: no packages found matching libmariadb-dev >>> Unable to detect a libmariadb-dev package, upgrade will continue >>> % Total % Received % Xferd Average Speed Time Time Time >>> Current >>> Dload Upload Total Spent Left >>> Speed >>> 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 >>> 2 >>> The latest stable PacketFence version is 13.2, enter 'y' to upgrade to >>> this version or 'n' to specify the version manually (y/n): n >>> Please enter the PacketFence version to which you wish to upgrade: 14.0 >>> Hit:1 http://security.debian.org/debian-security >>> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >>> bullseye-security InRelease >>> Hit:2 http://deb.debian.org/debian >>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>> bullseye InRelease >>> Hit:3 http://deb.debian.org/debian >>> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >>> bullseye-updates InRelease >>> Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >>> InRelease >>> Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >>> Release >>> 404 Not Found [IP: 192.95.20.194 80] >>> Reading package lists... Done >>> E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 >>> bullseye Release' does not have a Release file. >>> N: Updating from such a repository can't be done securely, and is >>> therefore disabled by default. >>> N: See apt-secure(8) manpage for repository creation and user >>> configuration details. >>> root@guestpf:/# >>> >>> Am I missing anything? >>> Thanks in advance, >>> - Arun >>> >> |
From: Goimard, J. <jeg...@ak...> - 2024-09-17 13:38:37
|
Hi Arum, Ok, Sorry I wasn't clear enough. The problem is on the db backup that has been created on 13.2.0. Please, apply maintenance patches on 13.2.0, not on 14.0.0. The doc is the same for both https://www.packetfence.org/doc/13.2.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches that is why the previous link used 14.0.0 Sorry for the misdirection. Thank you Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle <ak...@gm...> Sent: Tuesday, September 17, 2024 9:26 AM To: Goimard, Jeremy Cc: pac...@li... Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@ packetfence: ~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit. service with SysV service script with /lib/systemd/systemd-sysv-install. ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1138 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 997 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 root@packetfence:~# systemctl stop packetfence-config root@packetfence:~# apt update Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security InRelease Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm InRelease Hit:4 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhQJSq3xQ$> bookworm-updates InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 10 packages can be upgraded. Run 'apt list --upgradable' to see them. W: http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the DEPRECATION section in apt-key(8) for details. root@packetfence:~# root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done Some packages could not be installed. This may mean that you have requested an impossible situation or if you are using the unstable distribution that some required packages have not yet been created or been moved out of Incoming. The following information may help to resolve the situation: The following packages have unmet dependencies: netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed E: Broken packages root@packetfence:~# apt-mark hold netdata netdata set on hold. root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done The following packages have been kept back: netdata packetfence The following packages will be upgraded: git git-man packetfence-archive-keyring packetfence-config packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid packetfence-redis-cache 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. Need to get 54.4 MB of archives. After this operation, 428 kB of additional disk space will be used. Do you want to continue? [Y/n] y Get:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] Get:2 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiKCqQuYg$> bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-archive-keyring all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-config all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-golang-daemon amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-redis-cache all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] Fetched 54.4 MB in 13s (4,027 kB/s) Reading changelogs... Done (Reading database ... 124611 files and directories currently installed.) Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 Unpacking packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Setting up packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Synchronizing state of redis-server.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable redis-server Setting up packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... pfconfig.conf already exists, won't touch it! Setting up packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up git-man (1:2.39.5-0+deb12u1) ... Setting up git (1:2.39.5-0+deb12u1) ... Processing triggers for man-db (2.11.2-2) ... root@packetfence:~# root@packetfence:~# root@packetfence:~# root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.DZrE5kSBrD ~ ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Please continue to use the sourceforge list. No private help if you are not a client. That been wrote, you need to apply maintenance patches first (https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due to that https://github.com/inverse-inc/packetfence/issues/8105<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhiVHm4G_g$> which as been fixed. Thanks Regards. Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhh8MkC23Q$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhjnpXv_Ww$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhg5YPw8ng$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!Qtj1Vx-IYoUwnQzOWOd0MgRYPibHMSA5t0CC4XxeGF7IvZX6ORoq7y4p3wihUNoUyDKpwhhtlG3Xsg$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 2:20:18 AM To: Goimard, Jeremy Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14. 0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14.0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to add the IP address and copied the export.tdz from the source. root@packetfence:/usr/local/pf/conf# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.VG977Nk5tp /usr/local/pf/conf ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory Thanks, - Arun On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li...<mailto:pac...@li...> Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Arun K. <ak...@gm...> - 2024-09-17 13:26:46
|
Hi Jeremy, I tried the steps given to apply maintenance patch but still facing the same error: root@packetfence:~# /usr/local/pf/bin/pfcmd service pf stop Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1138 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 997 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 root@packetfence:~# systemctl stop packetfence-config root@packetfence:~# apt update Hit:1 http://security.debian.org/debian-security bookworm-security InRelease Hit:2 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm InRelease Hit:3 http://deb.debian.org/debian bookworm InRelease Hit:4 http://deb.debian.org/debian bookworm-updates InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 10 packages can be upgraded. Run 'apt list --upgradable' to see them. W: http://inverse.ca/downloads/PacketFence/debian/14.0/dists/bookworm/InRelease: Key is stored in legacy trusted.gpg keyring (/etc/apt/trusted.gpg), see the DEPRECATION section in apt-key(8) for details. root@packetfence:~# root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done Some packages could not be installed. This may mean that you have requested an impossible situation or if you are using the unstable distribution that some required packages have not yet been created or been moved out of Incoming. The following information may help to resolve the situation: The following packages have unmet dependencies: netdata-web : Conflicts: netdata-data but 1:1.10.0-1 is to be installed E: Broken packages root@packetfence:~# apt-mark hold netdata netdata set on hold. root@packetfence:~# apt upgrade Reading package lists... Done Building dependency tree... Done Reading state information... Done Calculating upgrade... Done The following packages have been kept back: netdata packetfence The following packages will be upgraded: git git-man packetfence-archive-keyring packetfence-config packetfence-golang-daemon packetfence-ntlm-wrapper packetfence-pfcmd-suid packetfence-redis-cache 8 upgraded, 0 newly installed, 0 to remove and 2 not upgraded. Need to get 54.4 MB of archives. After this operation, 428 kB of additional disk space will be used. Do you want to continue? [Y/n] y Get:1 http://security.debian.org/debian-security bookworm-security/main amd64 git amd64 1:2.39.5-0+deb12u1 [7,256 kB] Get:2 http://security.debian.org/debian-security bookworm-security/main amd64 git-man all 1:2.39.5-0+deb12u1 [2,054 kB] Get:3 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-archive-keyring all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [3,924 B] Get:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-config all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [52.1 kB] Get:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-golang-daemon amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [44.9 MB] Get:6 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-ntlm-wrapper amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [7,976 B] Get:7 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-pfcmd-suid amd64 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [4,576 B] Get:8 http://inverse.ca/downloads/PacketFence/debian/14.0 bookworm/bookworm amd64 packetfence-redis-cache all 14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1 [36.7 kB] Fetched 54.4 MB in 13s (4,027 kB/s) Reading changelogs... Done (Reading database ... 124611 files and directories currently installed.) Preparing to unpack .../0-git_1%3a2.39.5-0+deb12u1_amd64.deb ... Unpacking git (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../1-git-man_1%3a2.39.5-0+deb12u1_all.deb ... Unpacking git-man (1:2.39.5-0+deb12u1) over (1:2.39.2-1.1) ... Preparing to unpack .../2-packetfence-archive-keyring_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../3-packetfence-config_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../4-packetfence-golang-daemon_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Upgrading from 14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1 Unpacking packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../5-packetfence-ntlm-wrapper_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../6-packetfence-pfcmd-suid_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_amd64.deb ... Unpacking packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Preparing to unpack .../7-packetfence-redis-cache_14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1_all.deb ... Unpacking packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) over (14.0.0+20240906134923+1443385130+0012+v14~0~0+bookworm1) ... Setting up packetfence-redis-cache (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Synchronizing state of redis-server.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable redis-server Setting up packetfence-pfcmd-suid (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-config (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... pfconfig.conf already exists, won't touch it! Setting up packetfence-ntlm-wrapper (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-archive-keyring (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up packetfence-golang-daemon (14.0.0+20240910143601+1448220744+0012+maintenance~14~0+bookworm1) ... Setting up git-man (1:2.39.5-0+deb12u1) ... Setting up git (1:2.39.5-0+deb12u1) ... Processing triggers for man-db (2.11.2-2) ... root@packetfence:~# root@packetfence:~# root@packetfence:~# root@packetfence:~# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.DZrE5kSBrD ~ ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory root@packetfence:~# On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...> wrote: > Hi Arum, > > > Please continue to use the sourceforge list. > > No private help if you are not a client. > > > That been wrote, you need to apply maintenance patches first ( > https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due > to that https://github.com/inverse-inc/packetfence/issues/8105 which as > been fixed. > > > Thanks > > Regards. > > *Jeremy Goimard* > *Senior Software Engineer* > [image: signature_117474225] > *Office:* +1 613 670 8438 > Akamai Technologies - Inverse > 145 Broadway > Cambridge, MA 02142 > Connect with Us: > [image: signature_1388875202] <https://community.akamai.com/> [image: > signature_3364560605] <http://blogs.akamai.com/> [image: > signature_2499095976] <https://twitter.com/akamai> [image: > signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [image: > signature_4082763092] > <http://www.linkedin.com/company/akamai-technologies> [image: > signature_1928680685] > <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > > ------------------------------ > *From:* Arun Kangle <ak...@gm...> > *Sent:* Tuesday, September 17, 2024 2:20:18 AM > *To:* Goimard, Jeremy > *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 > > Thanks for reply Jeremy, I tried to export / import but getting the > following error. Could you please help me? I am using 14. 0 Zen. I did not > go through the configurator. After the first boot, I just edited the > "interfaces" file to > ZjQcmQRYFpfptBannerStart > This Message Is From an Untrusted Sender > You have not previously corresponded with this sender. > > ZjQcmQRYFpfptBannerEnd > Thanks for reply Jeremy, > I tried to export / import but getting the following error. Could you > please help me? > > I am using 14.0 Zen. I did not go through the configurator. After the > first boot, I just edited the "interfaces" file to add the IP address and > copied the export.tdz from the source. > > root@packetfence:/usr/local/pf/conf# > /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz > /tmp/tmp.VG977Nk5tp /usr/local/pf/conf > > ================================================================================= > Extracting archive... > Found the following content in the archive: > total 344604 > -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt > -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql > -rw-r--r-- 1 root root 113315 Sep 17 05:13 > packetfence-db-dump-2024-09-17_10h43.sql.gz > -rw-r--r-- 1 root root 176971909 Sep 17 05:13 > packetfence-files-dump-2024-09-17_10h43.tgz > -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt > drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr > > ================================================================================= > Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' > Extracting files dump > > ================================================================================= > Found compressed database dump > 'packetfence-db-dump-2024-09-17_10h43.sql.gz' > Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' > > ================================================================================= > Get PF version in PacketFence export > 13.2.0 > > ================================================================================= > Stopping PacketFence services > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > > ================================================================================= > The database dump uses mysqldump > > --------------------------------------------------------------------------------- > Recreating database pf > > --------------------------------------------------------------------------------- > Dump file was made without triggers and procedures > Importing bare schema for 13.2 > > --------------------------------------------------------------------------------- > Replacing create statements from the dump and removing drop statements > > --------------------------------------------------------------------------------- > Importing packetfence-db-dump-2024-09-17_10h43.sql into pf > ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' > Cleaning temporary directory > > Thanks, > - Arun > > On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...> > wrote: > >> Hi Arun, >> >> >> As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not >> Debian 11. >> >> >> So, the upgrade script as is is not working. You will need to >> export/import in a new VM. >> >> >> I am currently updating our documentation. >> >> >> Thanks for reporting it and using PacketFence >> >> Regards >> >> >> *Jeremy Goimard* >> *Senior Software Engineer* >> [image: signature_117474225] >> *Office:* +1 613 670 8438 >> Akamai Technologies - Inverse >> 145 Broadway >> Cambridge, MA 02142 >> Connect with Us: >> [image: signature_1388875202] <https://community.akamai.com/> [image: >> signature_3364560605] <http://blogs.akamai.com/> [image: >> signature_2499095976] >> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> >> [image: signature_3425345268] >> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> >> [image: signature_4082763092] >> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> >> [image: signature_1928680685] >> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> >> >> ------------------------------ >> *From:* Arun Kangle via PacketFence-users < >> pac...@li...> >> *Sent:* Monday, September 16, 2024 11:09:39 AM >> *To:* pac...@li... >> *Cc:* Arun Kangle >> *Subject:* [PacketFence-users] Unable to upgrade to 14.0 >> >> Hi All, Currently I am running 13. 2. 0 version when i run >> "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise >> the latest version automatically and when i entered 14. 0 manually that too >> fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh >> ZjQcmQRYFpfptBannerStart >> This Message Is From an External Sender >> This message came from outside your organization. >> >> ZjQcmQRYFpfptBannerEnd >> Hi All, >> Currently I am running 13.2.0 version when i run >> "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the >> latest version automatically and when i entered 14.0 manually that too >> fails. >> >> root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh >> >> ================================================================================= >> Installing or upgrading the upgrade tools for PacketFence >> Hit:1 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye InRelease >> Hit:2 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye-updates InRelease >> Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye >> InRelease >> Hit:4 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >> bullseye-security InRelease >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> 88 packages can be upgraded. Run 'apt list --upgradable' to see them. >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> packetfence-upgrade is already the newest version >> (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). >> The following packages were automatically installed and are no longer >> required: >> libgnutls-dane0 libunbound8 >> Use 'apt autoremove' to remove them. >> 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. >> >> ================================================================================= >> Starting upgrade process >> >> ================================================================================= >> Attempting to disable the monit service so it doesn't interfere with the >> upgrade >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> Attempting to stop the monit service so it doesn't interfere with the >> upgrade >> >> --------------------------------------------------------------------------------- >> Stopping the PacketFence services >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> Service Status PID >> packetfence-api-frontend.service stopped 0 >> packetfence-config.service started 0 >> packetfence-docker-iptables.service disabled 0 >> packetfence-fingerbank-collector.service disabled 0 >> packetfence-galera-autofix.service disabled 0 >> packetfence-haproxy-admin.service stopped 0 >> packetfence-haproxy-db.service disabled 0 >> packetfence-haproxy-portal.service stopped 0 >> packetfence-httpd.aaa.service stopped 0 >> packetfence-httpd.admin_dispatcher.service stopped 0 >> packetfence-httpd.dispatcher.service stopped 0 >> packetfence-httpd.portal.service stopped 0 >> packetfence-httpd.webservices.service stopped 0 >> packetfence-ip6tables.service stopped 0 >> packetfence-iptables.service stopped 0 >> packetfence-kafka.service disabled 0 >> packetfence-keepalived.service stopped 0 >> packetfence-mariadb.service started 1992 >> packetfence-mysql-probe.service disabled 0 >> packetfence-netdata.service stopped 0 >> packetfence-ntlm-auth-api.service disabled 0 >> packetfence-pfacct.service stopped 0 >> packetfence-pfconnector-client.service stopped 0 >> packetfence-pfconnector-server.service stopped 0 >> packetfence-pfcron.service stopped 0 >> packetfence-pfdetect.service disabled 0 >> packetfence-pfdhcp.service stopped 0 >> packetfence-pfdhcplistener.service stopped 0 >> packetfence-pfdns.service stopped 0 >> packetfence-pffilter.service stopped 0 >> packetfence-pfipset.service stopped 0 >> packetfence-pfldapexplorer.service stopped 0 >> packetfence-pfperl-api.service stopped 0 >> packetfence-pfpki.service stopped 0 >> packetfence-pfqueue-backend.service stopped 0 >> packetfence-pfqueue-go.service stopped 0 >> packetfence-pfqueue-perl.service disabled 0 >> packetfence-pfsetacls.service stopped 0 >> packetfence-pfsso.service stopped 0 >> packetfence-pfstats.service stopped 0 >> packetfence-proxysql.service disabled 0 >> packetfence-radiusd-acct.service disabled 0 >> packetfence-radiusd-auth.service stopped 0 >> packetfence-radiusd-cli.service disabled 0 >> packetfence-radiusd-eduroam.service disabled 0 >> packetfence-radiusd-load_balancer.service disabled 0 >> packetfence-radsniff.service stopped 0 >> packetfence-redis-cache.service started 1817 >> packetfence-redis_ntlm_cache.service disabled 0 >> packetfence-redis_queue.service stopped 0 >> packetfence-snmptrapd.service disabled 0 >> packetfence-tracking-config.service disabled 1 >> >> ================================================================================= >> Generating full pre-upgrade backup to >> /root/packetfence-pre-upgrade-backup-1726498856.tgz >> /root/backup/ , folder already created. >> >> packetfence-files-dump have been created in /root/backup/ >> >> packetfence-files-dump older than 7 days have been removed. >> >> Database backup will start >> Not a Galera cluster, nothing to stop >> mysqldump completed >> Not a Galera cluster, nothing to reenable >> /tmp/tmp.MfRZFp07Eq /usr/local/pf >> >> ================================================================================= >> Copying dump files to temporary export directory >> Database dump uses mysqldump. Exporting the grants from the database. >> Enter the MariaDB root password if prompted to >> >> ================================================================================= >> Building list of configuration files for this current version >> >> ================================================================================= >> Computing additional files that are referenced in the configuration >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/admin.conf) >> Found reference to external file that is outside the PF directory >> (/usr/local/fingerbank/conf/fingerbank.conf) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/iptables-input.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/iptables-input-management.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/ip6tables-input-management.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/report.conf) >> >> ================================================================================= >> Creating export archive >> add_files.txt >> grants.sql >> packetfence-db-dump-2024-09-16_20h32.sql.gz >> packetfence-files-dump-2024-09-16_20h30.tgz >> stored_config_files.txt >> usr/ >> usr/local/ >> usr/local/fingerbank/ >> usr/local/fingerbank/conf/ >> usr/local/fingerbank/conf/fingerbank.conf >> >> ================================================================================= >> Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz >> Cleaning temporary directory >> >> ================================================================================= >> Do you wish to perform the update of the operating system to the latest >> available patches during that process? (y/n): y >> >> ================================================================================= >> Backing up git_commit_id >> Backing up pf-release >> >> ================================================================================= >> Performing upgrade of the packages >> Unable to detect packages to remove >> dpkg-query: no packages found matching libmariadb-dev >> Unable to detect a libmariadb-dev package, upgrade will continue >> % Total % Received % Xferd Average Speed Time Time Time >> Current >> Dload Upload Total Spent Left >> Speed >> 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 >> 2 >> The latest stable PacketFence version is 13.2, enter 'y' to upgrade to >> this version or 'n' to specify the version manually (y/n): n >> Please enter the PacketFence version to which you wish to upgrade: 14.0 >> Hit:1 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >> bullseye-security InRelease >> Hit:2 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye InRelease >> Hit:3 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye-updates InRelease >> Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >> InRelease >> Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >> Release >> 404 Not Found [IP: 192.95.20.194 80] >> Reading package lists... Done >> E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 >> bullseye Release' does not have a Release file. >> N: Updating from such a repository can't be done securely, and is >> therefore disabled by default. >> N: See apt-secure(8) manpage for repository creation and user >> configuration details. >> root@guestpf:/# >> >> Am I missing anything? >> Thanks in advance, >> - Arun >> > |
From: Enrique G. <eg...@jc...> - 2024-09-17 12:37:35
|
Hi Robin I have updated my controller, and you are right, the CoA option is back, but only available when WPA2 is selected, weird as CoA can also be used when doing MAC AUTH and Radius assigned VLANS You can still switch to the old UI and configure your SSID there. I post a comment on Unifi, and I also open a forum thread, but still no luck. https://community.ui.com/releases/UniFi-Network-Application-8-4-62/40240312-bb43-4648-adab-5b05f3d4354e#comment/6b44ecc8-4c87-4aa6-bf31-1e03239aa66e https://community.ui.com/questions/CoA-Status/d7ae3d74-b448-4c62-a1cc-615b0230b8dc Enrique El lun, 16 sept 2024 a las 9:12, Robin Buhr (filder.cloud) (<ro...@fi...oud>) escribió: > Hi Enrique, > > unifi controller is at 8.4.59. Almost the latest version... > Am 16.09.2024 um 13:05 schrieb Enrique Gross via PacketFence-users: > > Hi Robin > > What version of the Unifi Software are you running? > > Enrique > > El lun, 16 de sept de 2024, 06:42, Robin Buhr (filder.cloud) > <ro...@fi...oud> <ro...@fi...oud> escribió: > >> Hi Enrique, >> >> yes, the CoA Option is available in Unifi-Controller. But it appears >> only, if Wireless Security Protocoll is set to "WPA2 Enterprise" within a >> specific SSID. Since I want to use the CP-Portal in my scenario, Security >> Protocoll is set to "Open". Is it even possible to deauth in this >> combination? >> >> I have one more question: Must the controller be set up as a switch in >> PF? If not, when do I set Switch Type to "Unifi Controller"? >> >> Regards >> Robin >> Am 10.09.2024 um 20:56 schrieb Enrique Gross via PacketFence-users: >> >> Hi Robin >> >> If your deauth method is RADIUS, just configure a RADIUS secret password, >> use CoA, and your VLANS per role. There is no need to configure web >> services or SNMP, controller ip address. >> >> I think the radius connector should be disabled too >> >> And of course don't forget to configure RADIUS profile on the unifi >> controller. >> >> Like Micheal said, Unifi is doing a massive reworking on the UI. I didn't >> know the CoA option is now back on new UI, good news. >> >> You can debug CoA on the UAPs with tcpdump so you can check if RADIUS >> messages are reaching APs. >> >> Enrique >> >> >> >> El mar, 10 de sept de 2024, 12:24, Michael Preissner via >> PacketFence-users <pac...@li...> escribió: >> >>> I know there are several folks with working solutions, but many of them >>> rely on using the old legacy interface and/or outdated firmware versions. >>> UI did recently re-introduce the RADIUS CoA to the New interface in the >>> SSID configuration (might still be an EA feature). I haven't had an >>> opportunity to test yet, but we should be able to do it at this point >>> without going back to the legacy interface. >>> >>> Mike >>> >>> On Tue, Sep 10, 2024 at 11:04 AM Robin Buhr (filder.cloud) via >>> PacketFence-users <pac...@li...> wrote: >>> >>>> Hello Community, >>>> >>>> I am new to the topic of Packetfence and find it really exciting. Currently, I am trying to overcome the following challenge: Dynamic VLAN assignment with Unifi APs/Controller(VM) after authentication via a captive portal provided by Packetfence. Since it is an open SSID provided by the Unifi AP, RADIUS (and CoA?) is not possible. >>>> I am stuck at the point of Deauth. Is there a guide on how the "switch" in PF must be configured for Deauth to work? The protocol (SSH/SNMP/HTTP/S/RADIUS) doesn't matter to me. I simply want a device to be moved to another VLAN after successful authentication. >>>> >>>> -- >>>> Beste Grüße >>>> Robin >>>> >>>> _______________________________________________ >>>> PacketFence-users mailing list >>>> Pac...@li... >>>> https://lists.sourceforge.net/lists/listinfo/packetfence-users >>>> >>> _______________________________________________ >>> PacketFence-users mailing list >>> Pac...@li... >>> https://lists.sourceforge.net/lists/listinfo/packetfence-users >>> >> >> >> _______________________________________________ >> PacketFence-users mailing lis...@li...https://lists.sourceforge.net/lists/listinfo/packetfence-users >> >> -- >> Beste Grüße >> Robin Buhr >> >> T +49 (711) 50483726 >> M ro...@fi...oud >> >> filder.cloud UG (Haftungsbeschränkt)In den Gärtlesäckern 18/2 >> 70771 Leinfelden-Echterdingen <https://www.google.com/maps/search/In+den+G%C3%A4rtles%C3%A4ckern+18%2F2+%0D%0A70771+Leinfelden-Echterdingen?entry=gmail&source=g> >> HRB 778485 >> >> > > _______________________________________________ > PacketFence-users mailing lis...@li...https://lists.sourceforge.net/lists/listinfo/packetfence-users > > -- > Beste Grüße > Robin Buhr > > T +49 (711) 50483726 > M ro...@fi...oud > > filder.cloud UG (Haftungsbeschränkt) > In den Gärtlesäckern 18/2 > 70771 Leinfelden-Echterdingen > HRB 778485 > > -- [image: Imágenes integradas 1] |
From: Goimard, J. <jeg...@ak...> - 2024-09-17 12:25:47
|
Hi Arum, No worries. Thanks for your understanding. Note, that there is also that issue that is opened if you are using mariadb-backup: https://github.com/inverse-inc/packetfence/issues/8257 As I wrote, I am currently rewriting the doc about upgrade with mariadb-backup. If you are on a standalone WITHOUT mariadb-backup, you should be fine with the import/export mechanism from latest 13.2.0 on Debian 11 to PacketFence 14.0.0 on Debian 12. Thank you for using PacketFence. Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle <ak...@gm...> Sent: Tuesday, September 17, 2024 8:16:11 AM To: Goimard, Jeremy Cc: pac...@li... Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for the reply and sorry for not paying attention if the email was sent only to you. - Arun On Tue, Sep 17, 2024 at 5: 39 PM Goimard, Jeremy <jegoimar@ akamai. com> wrote: Hi Arum, Please continue to use the sourceforge list. No private ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for the reply and sorry for not paying attention if the email was sent only to you. - Arun On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arum, Please continue to use the sourceforge list. No private help if you are not a client. That been wrote, you need to apply maintenance patches first (https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due to that https://github.com/inverse-inc/packetfence/issues/8105<https://urldefense.com/v3/__https://github.com/inverse-inc/packetfence/issues/8105__;!!GjvTz_vk!SZIVyOyJGm_LTrrKR9ny_7tAel4FzXlKtFK5d1QiY2sYccaybHrpwdo2ZxrrdSYNh-JJ-G2vSEE8_w$> which as been fixed. Thanks Regards. Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!SZIVyOyJGm_LTrrKR9ny_7tAel4FzXlKtFK5d1QiY2sYccaybHrpwdo2ZxrrdSYNh-JJ-G1NYUdCyA$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!SZIVyOyJGm_LTrrKR9ny_7tAel4FzXlKtFK5d1QiY2sYccaybHrpwdo2ZxrrdSYNh-JJ-G0dNznjTw$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!SZIVyOyJGm_LTrrKR9ny_7tAel4FzXlKtFK5d1QiY2sYccaybHrpwdo2ZxrrdSYNh-JJ-G1cfOWe2w$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!SZIVyOyJGm_LTrrKR9ny_7tAel4FzXlKtFK5d1QiY2sYccaybHrpwdo2ZxrrdSYNh-JJ-G05Eo2inw$> ________________________________ From: Arun Kangle <ak...@gm...<mailto:ak...@gm...>> Sent: Tuesday, September 17, 2024 2:20:18 AM To: Goimard, Jeremy Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14. 0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14.0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to add the IP address and copied the export.tdz from the source. root@packetfence:/usr/local/pf/conf# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.VG977Nk5tp /usr/local/pf/conf ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory Thanks, - Arun On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li...<mailto:pac...@li...> Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Arun K. <ak...@gm...> - 2024-09-17 12:16:35
|
Thanks for the reply and sorry for not paying attention if the email was sent only to you. - Arun On Tue, Sep 17, 2024 at 5:39 PM Goimard, Jeremy <jeg...@ak...> wrote: > Hi Arum, > > > Please continue to use the sourceforge list. > > No private help if you are not a client. > > > That been wrote, you need to apply maintenance patches first ( > https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due > to that https://github.com/inverse-inc/packetfence/issues/8105 which as > been fixed. > > > Thanks > > Regards. > > *Jeremy Goimard* > *Senior Software Engineer* > [image: signature_117474225] > *Office:* +1 613 670 8438 > Akamai Technologies - Inverse > 145 Broadway > Cambridge, MA 02142 > Connect with Us: > [image: signature_1388875202] <https://community.akamai.com/> [image: > signature_3364560605] <http://blogs.akamai.com/> [image: > signature_2499095976] <https://twitter.com/akamai> [image: > signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [image: > signature_4082763092] > <http://www.linkedin.com/company/akamai-technologies> [image: > signature_1928680685] > <http://www.youtube.com/user/akamaitechnologies?feature=results_main> > > ------------------------------ > *From:* Arun Kangle <ak...@gm...> > *Sent:* Tuesday, September 17, 2024 2:20:18 AM > *To:* Goimard, Jeremy > *Subject:* Re: [PacketFence-users] Unable to upgrade to 14.0 > > Thanks for reply Jeremy, I tried to export / import but getting the > following error. Could you please help me? I am using 14. 0 Zen. I did not > go through the configurator. After the first boot, I just edited the > "interfaces" file to > ZjQcmQRYFpfptBannerStart > This Message Is From an Untrusted Sender > You have not previously corresponded with this sender. > > ZjQcmQRYFpfptBannerEnd > Thanks for reply Jeremy, > I tried to export / import but getting the following error. Could you > please help me? > > I am using 14.0 Zen. I did not go through the configurator. After the > first boot, I just edited the "interfaces" file to add the IP address and > copied the export.tdz from the source. > > root@packetfence:/usr/local/pf/conf# > /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz > /tmp/tmp.VG977Nk5tp /usr/local/pf/conf > > ================================================================================= > Extracting archive... > Found the following content in the archive: > total 344604 > -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt > -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql > -rw-r--r-- 1 root root 113315 Sep 17 05:13 > packetfence-db-dump-2024-09-17_10h43.sql.gz > -rw-r--r-- 1 root root 176971909 Sep 17 05:13 > packetfence-files-dump-2024-09-17_10h43.tgz > -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt > drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr > > ================================================================================= > Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' > Extracting files dump > > ================================================================================= > Found compressed database dump > 'packetfence-db-dump-2024-09-17_10h43.sql.gz' > Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' > > ================================================================================= > Get PF version in PacketFence export > 13.2.0 > > ================================================================================= > Stopping PacketFence services > Synchronizing state of monit.service with SysV service script with > /lib/systemd/systemd-sysv-install. > Executing: /lib/systemd/systemd-sysv-install disable monit > > ================================================================================= > The database dump uses mysqldump > > --------------------------------------------------------------------------------- > Recreating database pf > > --------------------------------------------------------------------------------- > Dump file was made without triggers and procedures > Importing bare schema for 13.2 > > --------------------------------------------------------------------------------- > Replacing create statements from the dump and removing drop statements > > --------------------------------------------------------------------------------- > Importing packetfence-db-dump-2024-09-17_10h43.sql into pf > ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' > Cleaning temporary directory > > Thanks, > - Arun > > On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...> > wrote: > >> Hi Arun, >> >> >> As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not >> Debian 11. >> >> >> So, the upgrade script as is is not working. You will need to >> export/import in a new VM. >> >> >> I am currently updating our documentation. >> >> >> Thanks for reporting it and using PacketFence >> >> Regards >> >> >> *Jeremy Goimard* >> *Senior Software Engineer* >> [image: signature_117474225] >> *Office:* +1 613 670 8438 >> Akamai Technologies - Inverse >> 145 Broadway >> Cambridge, MA 02142 >> Connect with Us: >> [image: signature_1388875202] <https://community.akamai.com/> [image: >> signature_3364560605] <http://blogs.akamai.com/> [image: >> signature_2499095976] >> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> >> [image: signature_3425345268] >> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> >> [image: signature_4082763092] >> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> >> [image: signature_1928680685] >> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> >> >> ------------------------------ >> *From:* Arun Kangle via PacketFence-users < >> pac...@li...> >> *Sent:* Monday, September 16, 2024 11:09:39 AM >> *To:* pac...@li... >> *Cc:* Arun Kangle >> *Subject:* [PacketFence-users] Unable to upgrade to 14.0 >> >> Hi All, Currently I am running 13. 2. 0 version when i run >> "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise >> the latest version automatically and when i entered 14. 0 manually that too >> fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh >> ZjQcmQRYFpfptBannerStart >> This Message Is From an External Sender >> This message came from outside your organization. >> >> ZjQcmQRYFpfptBannerEnd >> Hi All, >> Currently I am running 13.2.0 version when i run >> "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the >> latest version automatically and when i entered 14.0 manually that too >> fails. >> >> root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh >> >> ================================================================================= >> Installing or upgrading the upgrade tools for PacketFence >> Hit:1 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye InRelease >> Hit:2 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye-updates InRelease >> Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye >> InRelease >> Hit:4 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >> bullseye-security InRelease >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> 88 packages can be upgraded. Run 'apt list --upgradable' to see them. >> Reading package lists... Done >> Building dependency tree... Done >> Reading state information... Done >> packetfence-upgrade is already the newest version >> (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). >> The following packages were automatically installed and are no longer >> required: >> libgnutls-dane0 libunbound8 >> Use 'apt autoremove' to remove them. >> 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. >> >> ================================================================================= >> Starting upgrade process >> >> ================================================================================= >> Attempting to disable the monit service so it doesn't interfere with the >> upgrade >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> Attempting to stop the monit service so it doesn't interfere with the >> upgrade >> >> --------------------------------------------------------------------------------- >> Stopping the PacketFence services >> Synchronizing state of monit.service with SysV service script with >> /lib/systemd/systemd-sysv-install. >> Executing: /lib/systemd/systemd-sysv-install disable monit >> Service Status PID >> packetfence-api-frontend.service stopped 0 >> packetfence-config.service started 0 >> packetfence-docker-iptables.service disabled 0 >> packetfence-fingerbank-collector.service disabled 0 >> packetfence-galera-autofix.service disabled 0 >> packetfence-haproxy-admin.service stopped 0 >> packetfence-haproxy-db.service disabled 0 >> packetfence-haproxy-portal.service stopped 0 >> packetfence-httpd.aaa.service stopped 0 >> packetfence-httpd.admin_dispatcher.service stopped 0 >> packetfence-httpd.dispatcher.service stopped 0 >> packetfence-httpd.portal.service stopped 0 >> packetfence-httpd.webservices.service stopped 0 >> packetfence-ip6tables.service stopped 0 >> packetfence-iptables.service stopped 0 >> packetfence-kafka.service disabled 0 >> packetfence-keepalived.service stopped 0 >> packetfence-mariadb.service started 1992 >> packetfence-mysql-probe.service disabled 0 >> packetfence-netdata.service stopped 0 >> packetfence-ntlm-auth-api.service disabled 0 >> packetfence-pfacct.service stopped 0 >> packetfence-pfconnector-client.service stopped 0 >> packetfence-pfconnector-server.service stopped 0 >> packetfence-pfcron.service stopped 0 >> packetfence-pfdetect.service disabled 0 >> packetfence-pfdhcp.service stopped 0 >> packetfence-pfdhcplistener.service stopped 0 >> packetfence-pfdns.service stopped 0 >> packetfence-pffilter.service stopped 0 >> packetfence-pfipset.service stopped 0 >> packetfence-pfldapexplorer.service stopped 0 >> packetfence-pfperl-api.service stopped 0 >> packetfence-pfpki.service stopped 0 >> packetfence-pfqueue-backend.service stopped 0 >> packetfence-pfqueue-go.service stopped 0 >> packetfence-pfqueue-perl.service disabled 0 >> packetfence-pfsetacls.service stopped 0 >> packetfence-pfsso.service stopped 0 >> packetfence-pfstats.service stopped 0 >> packetfence-proxysql.service disabled 0 >> packetfence-radiusd-acct.service disabled 0 >> packetfence-radiusd-auth.service stopped 0 >> packetfence-radiusd-cli.service disabled 0 >> packetfence-radiusd-eduroam.service disabled 0 >> packetfence-radiusd-load_balancer.service disabled 0 >> packetfence-radsniff.service stopped 0 >> packetfence-redis-cache.service started 1817 >> packetfence-redis_ntlm_cache.service disabled 0 >> packetfence-redis_queue.service stopped 0 >> packetfence-snmptrapd.service disabled 0 >> packetfence-tracking-config.service disabled 1 >> >> ================================================================================= >> Generating full pre-upgrade backup to >> /root/packetfence-pre-upgrade-backup-1726498856.tgz >> /root/backup/ , folder already created. >> >> packetfence-files-dump have been created in /root/backup/ >> >> packetfence-files-dump older than 7 days have been removed. >> >> Database backup will start >> Not a Galera cluster, nothing to stop >> mysqldump completed >> Not a Galera cluster, nothing to reenable >> /tmp/tmp.MfRZFp07Eq /usr/local/pf >> >> ================================================================================= >> Copying dump files to temporary export directory >> Database dump uses mysqldump. Exporting the grants from the database. >> Enter the MariaDB root password if prompted to >> >> ================================================================================= >> Building list of configuration files for this current version >> >> ================================================================================= >> Computing additional files that are referenced in the configuration >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/admin.conf) >> Found reference to external file that is outside the PF directory >> (/usr/local/fingerbank/conf/fingerbank.conf) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/iptables-input.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/iptables-input-management.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/ip6tables-input-management.conf.inc) >> Found reference to external file that is in the PF directory >> (/usr/local/pf/conf/report.conf) >> >> ================================================================================= >> Creating export archive >> add_files.txt >> grants.sql >> packetfence-db-dump-2024-09-16_20h32.sql.gz >> packetfence-files-dump-2024-09-16_20h30.tgz >> stored_config_files.txt >> usr/ >> usr/local/ >> usr/local/fingerbank/ >> usr/local/fingerbank/conf/ >> usr/local/fingerbank/conf/fingerbank.conf >> >> ================================================================================= >> Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz >> Cleaning temporary directory >> >> ================================================================================= >> Do you wish to perform the update of the operating system to the latest >> available patches during that process? (y/n): y >> >> ================================================================================= >> Backing up git_commit_id >> Backing up pf-release >> >> ================================================================================= >> Performing upgrade of the packages >> Unable to detect packages to remove >> dpkg-query: no packages found matching libmariadb-dev >> Unable to detect a libmariadb-dev package, upgrade will continue >> % Total % Received % Xferd Average Speed Time Time Time >> Current >> Dload Upload Total Spent Left >> Speed >> 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 >> 2 >> The latest stable PacketFence version is 13.2, enter 'y' to upgrade to >> this version or 'n' to specify the version manually (y/n): n >> Please enter the PacketFence version to which you wish to upgrade: 14.0 >> Hit:1 http://security.debian.org/debian-security >> <https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> >> bullseye-security InRelease >> Hit:2 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye InRelease >> Hit:3 http://deb.debian.org/debian >> <https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> >> bullseye-updates InRelease >> Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >> InRelease >> Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye >> Release >> 404 Not Found [IP: 192.95.20.194 80] >> Reading package lists... Done >> E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 >> bullseye Release' does not have a Release file. >> N: Updating from such a repository can't be done securely, and is >> therefore disabled by default. >> N: See apt-secure(8) manpage for repository creation and user >> configuration details. >> root@guestpf:/# >> >> Am I missing anything? >> Thanks in advance, >> - Arun >> > |
From: Goimard, J. <jeg...@ak...> - 2024-09-17 12:09:12
|
Hi Arum, Please continue to use the sourceforge list. No private help if you are not a client. That been wrote, you need to apply maintenance patches first (https://www.packetfence.org/doc/14.0.0/PacketFence_Upgrade_Guide.html#_apply_maintenance_patches) due to that https://github.com/inverse-inc/packetfence/issues/8105 which as been fixed. Thanks Regards. Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle <ak...@gm...> Sent: Tuesday, September 17, 2024 2:20:18 AM To: Goimard, Jeremy Subject: Re: [PacketFence-users] Unable to upgrade to 14.0 Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14. 0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to ZjQcmQRYFpfptBannerStart This Message Is From an Untrusted Sender You have not previously corresponded with this sender. ZjQcmQRYFpfptBannerEnd Thanks for reply Jeremy, I tried to export / import but getting the following error. Could you please help me? I am using 14.0 Zen. I did not go through the configurator. After the first boot, I just edited the "interfaces" file to add the IP address and copied the export.tdz from the source. root@packetfence:/usr/local/pf/conf# /usr/local/pf/addons/full-import/import.sh -f /tmp/export.tgz /tmp/tmp.VG977Nk5tp /usr/local/pf/conf ================================================================================= Extracting archive... Found the following content in the archive: total 344604 -rw-r--r-- 1 root root 256 Sep 17 05:15 add_files.txt -rw-r--r-- 1 root root 1225 Sep 17 05:15 grants.sql -rw-r--r-- 1 root root 113315 Sep 17 05:13 packetfence-db-dump-2024-09-17_10h43.sql.gz -rw-r--r-- 1 root root 176971909 Sep 17 05:13 packetfence-files-dump-2024-09-17_10h43.tgz -rw-r--r-- 1 root root 1630 Sep 17 05:15 stored_config_files.txt drwxr-xr-x 3 root root 4096 Sep 17 05:15 usr ================================================================================= Found files dump 'packetfence-files-dump-2024-09-17_10h43.tgz' Extracting files dump ================================================================================= Found compressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql.gz' Uncompressed database dump 'packetfence-db-dump-2024-09-17_10h43.sql' ================================================================================= Get PF version in PacketFence export 13.2.0 ================================================================================= Stopping PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit ================================================================================= The database dump uses mysqldump --------------------------------------------------------------------------------- Recreating database pf --------------------------------------------------------------------------------- Dump file was made without triggers and procedures Importing bare schema for 13.2 --------------------------------------------------------------------------------- Replacing create statements from the dump and removing drop statements --------------------------------------------------------------------------------- Importing packetfence-db-dump-2024-09-17_10h43.sql into pf ERROR 1062 (23000) at line 1235: Duplicate entry '1' for key 'PRIMARY' Cleaning temporary directory Thanks, - Arun On Tue, Sep 17, 2024 at 2:05 AM Goimard, Jeremy <jeg...@ak...<mailto:jeg...@ak...>> wrote: Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXamMkwxFw$> [signature_3425345268] <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXaZANqd3g$> [signature_4082763092] <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbRsenMsg$> [signature_1928680685] <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!XTRjrsF9y4yzANhBbDhQ3oAq0TBKyg5iWXsCp4sapQ6cmuGOQioxapkbwaO4_pQ4e5JbGXbnohoB2g$> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...<mailto:pac...@li...>> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li...<mailto:pac...@li...> Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Goimard, J. <jeg...@ak...> - 2024-09-16 20:35:30
|
Hi Arun, As mentioned in change log, PacketFence 14.0.0 in on Debian 12. Not Debian 11. So, the upgrade script as is is not working. You will need to export/import in a new VM. I am currently updating our documentation. Thanks for reporting it and using PacketFence Regards Jeremy Goimard Senior Software Engineer [signature_117474225] Office: +1 613 670 8438 Akamai Technologies - Inverse 145 Broadway Cambridge, MA 02142 Connect with Us: [signature_1388875202]<https://community.akamai.com/> [signature_3364560605] <http://blogs.akamai.com/> [signature_2499095976] <https://twitter.com/akamai> [signature_3425345268] <http://www.facebook.com/AkamaiTechnologies> [signature_4082763092] <http://www.linkedin.com/company/akamai-technologies> [signature_1928680685] <http://www.youtube.com/user/akamaitechnologies?feature=results_main> ________________________________ From: Arun Kangle via PacketFence-users <pac...@li...> Sent: Monday, September 16, 2024 11:09:39 AM To: pac...@li... Cc: Arun Kangle Subject: [PacketFence-users] Unable to upgrade to 14.0 Hi All, Currently I am running 13. 2. 0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade. sh" it is failing to recognise the latest version automatically and when i entered 14. 0 manually that too fails. root@ guestpf: /# /usr/local/pf/addons/upgrade/do-upgrade. sh ZjQcmQRYFpfptBannerStart This Message Is From an External Sender This message came from outside your organization. ZjQcmQRYFpfptBannerEnd Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security<https://urldefense.com/v3/__http://security.debian.org/debian-security__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxn-8cF1mg$> bullseye-security InRelease Hit:2 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye InRelease Hit:3 http://deb.debian.org/debian<https://urldefense.com/v3/__http://deb.debian.org/debian__;!!GjvTz_vk!Tn8l-MQM0y3YfN4JBxAhtqrRSRlBC88xhvieNAvl5ycDSHe0en6jmNU7lP9mdsbjsZj1zSQ6k3l175bQNBMwMrYbvPM3vxnVT1fr3Q$> bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Rein v. ‘t V. <re...@va...> - 2024-09-16 19:13:45
|
A few things: check if snmp traffic is working from packetfence to the switch. Also check the radius return logs to see if the vlan is returned. This is easy in the web interface. Under auditing; RADIUS logs you can see the full return strings from PacketFence Example: RADIUS Request Airespace-Wlan-Id = "1", Called-Station-Id = "d4:6d:50:e3:ae:e0:Samvaerket-guests", Called-Station-SSID = "Samvaerket-guests", Calling-Station-Id = "e6:63:3c:fb:8a:dc", Cisco-AVPair = "service-type=Call Check", Cisco-AVPair = "audit-session-id=1400330A0004884BFC03D52A", Cisco-AVPair = "method=mab", Cisco-AVPair = "client-iif-id=1073747193", Cisco-AVPair = "vlan-id=498", Cisco-AVPair = "cisco-wlan-ssid=Samvaerket-guests", Cisco-AVPair = "wlan-profile-name=Samvaerket-guests", Event-Timestamp = "Sep 16 2024 20:06:35 CEST", Framed-MTU = "1485", FreeRADIUS-Client-IP-Address = "10.51.0.20", Message-Authenticator = "0xaf1468be12d6bb5e7c6a432fa81225ef", NAS-IP-Address = "10.51.0.20", NAS-Identifier = "WLC", NAS-Port = "51012", NAS-Port-Id = "capwap_90000006", NAS-Port-Type = "Wireless-802.11", PacketFence-KeyBalanced = "c2acf8e4cbb314039e027c04672c5bd4", PacketFence-Radius-Ip = "10.51.0.11", Realm = "null", Service-Type = "Call-Check", Stripped-User-Name = "e6633cfb8adc", User-Name = "e6633cfb8adc", User-Password = "******" RADIUS Reply REST-HTTP-Status-Code = "200", Tunnel-Medium-Type = "IEEE-802", Tunnel-Private-Group-Id = "500", Tunnel-Type = "VLAN" Once you have verified the vlan is returned you can see what the switch is doing with the request. Sent from my iPhone > On 16 Sep 2024, at 16.43, Peter Jensen via PacketFence-users <pac...@li...> wrote: > > > Hello, > > I’m currently working on a PacketFence setup and having trouble with the dynamic VLAN assignment. Authentication is functioning correctly (verified via logs), and the switch confirms that 802.1X authentication is successful. However, VLAN assignment is not working as expected. > > Here’s a summary of my setup and the steps I’ve taken: > > • I have added the switch and enabled Role Mapping by VLAN ID, assigning the correct VLAN ID. > • I created an Authentication Source with Authentication Rules using the memberof condition and the full DN of the LDAP group. This has been tested with and without any conditions, with the same result. > • The issue persists where no VLAN is assigned after successful authentication. > > Logs > > Below are some logs that may help diagnose the issue: > > packetfence.log > > 2024-09-16T15:57:44.791790+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: [mac:00:e0:4c:68:08:27] Instantiate profile 8021x (pf::Connection::ProfileFactory::_from_profile) > 2024-09-16T15:57:44.809341+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: [mac:00:e0:4c:68:08:27] Found authentication source(s) : '' for realm 'null' (pf::config::util::filter_authentication_sources) > 2024-09-16T15:57:44.809463+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: [mac:00:e0:4c:68:08:27] No rules matches or no category defined for the node, set it as unreg. (pf::role::getNodeInfoForAutoReg) > 2024-09-16T15:57:44.809463+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: [mac:00:e0:4c:68:08:27] No category computed for autoreg (pf::role::getNodeInfoForAutoReg) > 2024-09-16T15:57:44.814522+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: [mac:00:e0:4c:68:08:27] Username was NOT defined or unable to match a role - returning node based role '' (pf::role::getRegisteredRole) > 2024-09-16T15:57:44.814864+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: [mac:00:e0:4c:68:08:27] No parameter Vlan found in conf/switches.conf for the switch 192.168.188.212 (pf::Switch::getVlanByName) > > > > radius.log > > 2024-09-16T15:57:44.258471+02:00 packetfence-14 auth[91590]: Adding client 192.168.188.212/32 > 2024-09-16T15:57:44.827353+02:00 packetfence-14 auth[91590]: (42) Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli 00:e0:4c:68:08:27 via TLS tunnel) > 2024-09-16T15:57:44.837698+02:00 packetfence-14 auth[91590]: (43) Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli 00:e0:4c:68:08:27) > > > > What I’ve Tried: > > • Confirmed that the authentication source is correctly configured, using an LDAP group with the full DN in the rule. > • Verified that the switch is properly configured for 802.1X and dynamic VLAN assignment. > • Examined the PacketFence configuration for role mapping and VLAN settings, but the VLAN remains undefined after authentication. > > Environment: > > • PacketFence version: 14 > • Switch model and firmware: > vios_l2-ADVENTERPRISEK9-M), Experimental Version 15.2(20200924:215240 > C3560 Software (C3560-IPBASE-M), Version 12.2(35)SE5 > • Authentication source: ActiveDirecty > • OS of PacketFence server: Debian 12 > > Any help or direction on how to resolve this VLAN assignment issue would be appreciated! Has anyone encountered something similar? > > Thanks in advance. > > Best regards, > [Your Name] > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users |
From: Arun K. <ak...@gm...> - 2024-09-16 15:10:03
|
Hi All, Currently I am running 13.2.0 version when i run "/usr/local/pf/addons/upgrade/do-upgrade.sh" it is failing to recognise the latest version automatically and when i entered 14.0 manually that too fails. root@guestpf:/# /usr/local/pf/addons/upgrade/do-upgrade.sh ================================================================================= Installing or upgrading the upgrade tools for PacketFence Hit:1 http://deb.debian.org/debian bullseye InRelease Hit:2 http://deb.debian.org/debian bullseye-updates InRelease Hit:3 http://inverse.ca/downloads/PacketFence/debian/13.2 bullseye InRelease Hit:4 http://security.debian.org/debian-security bullseye-security InRelease Reading package lists... Done Building dependency tree... Done Reading state information... Done 88 packages can be upgraded. Run 'apt list --upgradable' to see them. Reading package lists... Done Building dependency tree... Done Reading state information... Done packetfence-upgrade is already the newest version (13.2.0+20240911142550+1449916049+0011+maintenance~13~2+bullseye1). The following packages were automatically installed and are no longer required: libgnutls-dane0 libunbound8 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 88 not upgraded. ================================================================================= Starting upgrade process ================================================================================= Attempting to disable the monit service so it doesn't interfere with the upgrade Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Attempting to stop the monit service so it doesn't interfere with the upgrade --------------------------------------------------------------------------------- Stopping the PacketFence services Synchronizing state of monit.service with SysV service script with /lib/systemd/systemd-sysv-install. Executing: /lib/systemd/systemd-sysv-install disable monit Service Status PID packetfence-api-frontend.service stopped 0 packetfence-config.service started 0 packetfence-docker-iptables.service disabled 0 packetfence-fingerbank-collector.service disabled 0 packetfence-galera-autofix.service disabled 0 packetfence-haproxy-admin.service stopped 0 packetfence-haproxy-db.service disabled 0 packetfence-haproxy-portal.service stopped 0 packetfence-httpd.aaa.service stopped 0 packetfence-httpd.admin_dispatcher.service stopped 0 packetfence-httpd.dispatcher.service stopped 0 packetfence-httpd.portal.service stopped 0 packetfence-httpd.webservices.service stopped 0 packetfence-ip6tables.service stopped 0 packetfence-iptables.service stopped 0 packetfence-kafka.service disabled 0 packetfence-keepalived.service stopped 0 packetfence-mariadb.service started 1992 packetfence-mysql-probe.service disabled 0 packetfence-netdata.service stopped 0 packetfence-ntlm-auth-api.service disabled 0 packetfence-pfacct.service stopped 0 packetfence-pfconnector-client.service stopped 0 packetfence-pfconnector-server.service stopped 0 packetfence-pfcron.service stopped 0 packetfence-pfdetect.service disabled 0 packetfence-pfdhcp.service stopped 0 packetfence-pfdhcplistener.service stopped 0 packetfence-pfdns.service stopped 0 packetfence-pffilter.service stopped 0 packetfence-pfipset.service stopped 0 packetfence-pfldapexplorer.service stopped 0 packetfence-pfperl-api.service stopped 0 packetfence-pfpki.service stopped 0 packetfence-pfqueue-backend.service stopped 0 packetfence-pfqueue-go.service stopped 0 packetfence-pfqueue-perl.service disabled 0 packetfence-pfsetacls.service stopped 0 packetfence-pfsso.service stopped 0 packetfence-pfstats.service stopped 0 packetfence-proxysql.service disabled 0 packetfence-radiusd-acct.service disabled 0 packetfence-radiusd-auth.service stopped 0 packetfence-radiusd-cli.service disabled 0 packetfence-radiusd-eduroam.service disabled 0 packetfence-radiusd-load_balancer.service disabled 0 packetfence-radsniff.service stopped 0 packetfence-redis-cache.service started 1817 packetfence-redis_ntlm_cache.service disabled 0 packetfence-redis_queue.service stopped 0 packetfence-snmptrapd.service disabled 0 packetfence-tracking-config.service disabled 1 ================================================================================= Generating full pre-upgrade backup to /root/packetfence-pre-upgrade-backup-1726498856.tgz /root/backup/ , folder already created. packetfence-files-dump have been created in /root/backup/ packetfence-files-dump older than 7 days have been removed. Database backup will start Not a Galera cluster, nothing to stop mysqldump completed Not a Galera cluster, nothing to reenable /tmp/tmp.MfRZFp07Eq /usr/local/pf ================================================================================= Copying dump files to temporary export directory Database dump uses mysqldump. Exporting the grants from the database. Enter the MariaDB root password if prompted to ================================================================================= Building list of configuration files for this current version ================================================================================= Computing additional files that are referenced in the configuration Found reference to external file that is in the PF directory (/usr/local/pf/conf/admin.conf) Found reference to external file that is outside the PF directory (/usr/local/fingerbank/conf/fingerbank.conf) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/iptables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/ip6tables-input-management.conf.inc) Found reference to external file that is in the PF directory (/usr/local/pf/conf/report.conf) ================================================================================= Creating export archive add_files.txt grants.sql packetfence-db-dump-2024-09-16_20h32.sql.gz packetfence-files-dump-2024-09-16_20h30.tgz stored_config_files.txt usr/ usr/local/ usr/local/fingerbank/ usr/local/fingerbank/conf/ usr/local/fingerbank/conf/fingerbank.conf ================================================================================= Done exporting to /root/packetfence-pre-upgrade-backup-1726498856.tgz Cleaning temporary directory ================================================================================= Do you wish to perform the update of the operating system to the latest available patches during that process? (y/n): y ================================================================================= Backing up git_commit_id Backing up pf-release ================================================================================= Performing upgrade of the packages Unable to detect packages to remove dpkg-query: no packages found matching libmariadb-dev Unable to detect a libmariadb-dev package, upgrade will continue % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 100 5 100 5 0 0 2 0 0:00:02 0:00:01 0:00:01 2 The latest stable PacketFence version is 13.2, enter 'y' to upgrade to this version or 'n' to specify the version manually (y/n): n Please enter the PacketFence version to which you wish to upgrade: 14.0 Hit:1 http://security.debian.org/debian-security bullseye-security InRelease Hit:2 http://deb.debian.org/debian bullseye InRelease Hit:3 http://deb.debian.org/debian bullseye-updates InRelease Ign:4 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye InRelease Err:5 http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release 404 Not Found [IP: 192.95.20.194 80] Reading package lists... Done E: The repository 'http://inverse.ca/downloads/PacketFence/debian/14.0 bullseye Release' does not have a Release file. N: Updating from such a repository can't be done securely, and is therefore disabled by default. N: See apt-secure(8) manpage for repository creation and user configuration details. root@guestpf:/# Am I missing anything? Thanks in advance, - Arun |
From: Peter J. <pac...@sc...> - 2024-09-16 14:30:55
|
Hello, I’m currently working on a PacketFence setup and having trouble with the dynamic VLAN assignment. Authentication is functioning correctly (verified via logs), and the switch confirms that 802.1X authentication is successful. However, VLAN assignment is not working as expected. Here’s a summary of my setup and the steps I’ve taken: • I have added the switch and enabled Role Mapping by VLAN ID, assigning the correct VLAN ID. • I created an Authentication Source with Authentication Rules using the memberof condition and the full DN of the LDAP group. This has been tested with and without any conditions, with the same result. • The issue persists where no VLAN is assigned after successful authentication. Logs Below are some logs that may help diagnose the issue: *packetfence.log* 2024-09-16T15:57:44.791790+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: [mac:00:e0:4c:68:08:27] Instantiate profile 8021x (pf::Connection::ProfileFactory::_from_profile) 2024-09-16T15:57:44.809341+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: [mac:00:e0:4c:68:08:27] Found authentication source(s) : '' for realm 'null' (pf::config::util::filter_authentication_sources) 2024-09-16T15:57:44.809463+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: [mac:00:e0:4c:68:08:27] No rules matches or no category defined for the node, set it as unreg. (pf::role::getNodeInfoForAutoReg) 2024-09-16T15:57:44.809463+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: [mac:00:e0:4c:68:08:27] No category computed for autoreg (pf::role::getNodeInfoForAutoReg) 2024-09-16T15:57:44.814522+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) INFO: [mac:00:e0:4c:68:08:27] Username was NOT defined or unable to match a role - returning node based role '' (pf::role::getRegisteredRole) 2024-09-16T15:57:44.814864+02:00 packetfence-14 httpd.aaa-docker-wrapper[3036]: httpd.aaa(7) WARN: [mac:00:e0:4c:68:08:27] No parameter Vlan found in conf/switches.conf for the switch 192.168.188.212 (pf::Switch::getVlanByName) *radius.log* 2024-09-16T15:57:44.258471+02:00 packetfence-14 auth[91590]: Adding client 192.168.188.212/32 2024-09-16T15:57:44.827353+02:00 packetfence-14 auth[91590]: (42) Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli 00:e0:4c:68:08:27 via TLS tunnel) 2024-09-16T15:57:44.837698+02:00 packetfence-14 auth[91590]: (43) Login OK: [test01] (from client 192.168.188.212/32 port 50004 cli 00:e0:4c:68:08:27) What I’ve Tried: • Confirmed that the authentication source is correctly configured, using an LDAP group with the full DN in the rule. • Verified that the switch is properly configured for 802.1X and dynamic VLAN assignment. • Examined the PacketFence configuration for role mapping and VLAN settings, but the VLAN remains undefined after authentication. Environment: • PacketFence version: 14 • Switch model and firmware: vios_l2-ADVENTERPRISEK9-M), Experimental Version 15.2(20200924:215240 C3560 Software (C3560-IPBASE-M), Version 12.2(35)SE5 • Authentication source: ActiveDirecty • OS of PacketFence server: Debian 12 Any help or direction on how to resolve this VLAN assignment issue would be appreciated! Has anyone encountered something similar? Thanks in advance. Best regards, [Your Name] |
From: Robin B. (filder.cloud) <ro...@fi...> - 2024-09-16 13:44:55
|
Hi packetfence-community, I ´ve seen there was a guest management portal in previouse versions. Does it still exist, and I can´t find it? The reason why I´m asking is, I want to provide access codes/Vouchers to guests to grad acces to guest network :) . Is there a module integrated in PF to do so? -- Beste Grüße Robin Buhr T +49 (711) 50483726 M ro...@fi...oud filder.cloud UG (Haftungsbeschränkt) In den Gärtlesäckern 18/2 70771 Leinfelden-Echterdingen HRB 778485 |
From: Robin B. (filder.cloud) <ro...@fi...> - 2024-09-16 12:12:34
|
Hi Enrique, unifi controller is at 8.4.59. Almost the latest version... Am 16.09.2024 um 13:05 schrieb Enrique Gross via PacketFence-users: > Hi Robin > > What version of the Unifi Software are you running? > > Enrique > > El lun, 16 de sept de 2024, 06:42, Robin Buhr (filder.cloud) > <ro...@fi...oud> escribió: > > Hi Enrique, > > yes, the CoA Option is available in Unifi-Controller. But it > appears only, if Wireless Security Protocoll is set to "WPA2 > Enterprise" within a specific SSID. Since I want to use the > CP-Portal in my scenario, Security Protocoll is set to "Open". Is > it even possible to deauth in this combination? > > I have one more question: Must the controller be set up as a > switch in PF? If not, when do I set Switch Type to "Unifi Controller"? > > Regards > Robin > > Am 10.09.2024 um 20:56 schrieb Enrique Gross via PacketFence-users: >> Hi Robin >> >> If your deauth method is RADIUS, just configure a RADIUS secret >> password, use CoA, and your VLANS per role. There is no need to >> configure web services or SNMP, controller ip address. >> >> I think the radius connector should be disabled too >> >> And of course don't forget to configure RADIUS profile on the >> unifi controller. >> >> Like Micheal said, Unifi is doing a massive reworking on the UI. >> I didn't know the CoA option is now back on new UI, good news. >> >> You can debug CoA on the UAPs with tcpdump so you can check if >> RADIUS messages are reaching APs. >> >> Enrique >> >> >> >> El mar, 10 de sept de 2024, 12:24, Michael Preissner via >> PacketFence-users <pac...@li...> escribió: >> >> I know there are several folks with working solutions, but >> many of them rely on using the old legacy interface and/or >> outdated firmware versions. UI did recently re-introduce the >> RADIUS CoA to the New interface in the SSID configuration >> (might still be an EA feature). I haven't had an opportunity >> to test yet, but we should be able to do it at this point >> without going back to the legacy interface. >> >> Mike >> >> On Tue, Sep 10, 2024 at 11:04 AM Robin Buhr (filder.cloud) >> via PacketFence-users >> <pac...@li...> wrote: >> >> Hello Community, >> >> I am new to the topic of Packetfence and find it really exciting. Currently, I am trying to overcome the following challenge: Dynamic VLAN assignment with Unifi APs/Controller(VM) after authentication via a captive portal provided by Packetfence. Since it is an open SSID provided by the Unifi AP, RADIUS (and CoA?) is not possible. >> I am stuck at the point of Deauth. Is there a guide on how the "switch" in PF must be configured for Deauth to work? The protocol (SSH/SNMP/HTTP/S/RADIUS) doesn't matter to me. I simply want a device to be moved to another VLAN after successful authentication. >> >> -- >> Beste Grüße >> Robin >> >> _______________________________________________ >> PacketFence-users mailing list >> Pac...@li... >> https://lists.sourceforge.net/lists/listinfo/packetfence-users >> >> _______________________________________________ >> PacketFence-users mailing list >> Pac...@li... >> https://lists.sourceforge.net/lists/listinfo/packetfence-users >> >> >> >> _______________________________________________ >> PacketFence-users mailing list >> Pac...@li... >> https://lists.sourceforge.net/lists/listinfo/packetfence-users > > -- > Beste Grüße > Robin Buhr > > T +49 (711) 50483726 > Mr...@fi...oud > > filder.cloud UG (Haftungsbeschränkt) > In den Gärtlesäckern 18/2 70771 Leinfelden-Echterdingen <https://www.google.com/maps/search/In+den+G%C3%A4rtles%C3%A4ckern+18%2F2+%0D%0A70771+Leinfelden-Echterdingen?entry=gmail&source=g> > HRB 778485 > > > > _______________________________________________ > PacketFence-users mailing list > Pac...@li... > https://lists.sourceforge.net/lists/listinfo/packetfence-users -- Beste Grüße Robin Buhr T +49 (711) 50483726 Mr...@fi...oud filder.cloud UG (Haftungsbeschränkt) In den Gärtlesäckern 18/2 70771 Leinfelden-Echterdingen HRB 778485 |