PacketFence - BTS - PacketFence
View Issue Details
0001581PacketFencecorepublic2012-10-22 13:172012-10-22 16:45
fgaudreault 
fdurand 
immediateblockalways
resolvedno change required 
devel 
3.6.0 
0001581: Inline mode appears to be broken
Tested using the RADIUS inline, my node is registered in PF, but I still get to the portal. In fact, the ipset sessions doesn't print.

I am on CentOS 6.3

Oct 22 13:16:20 redir.cgi(0) INFO: re-evaluating access for node 00:1b:b1:8b:82:13 (redir.cgi called) (pf::enforcement::reevaluate_access)
Oct 22 13:16:20 redir.cgi(0) INFO: Instantiate a new iptables modification method. pf::ipset (pf::inline::get_technique)
Oct 22 13:16:23 pfsetvlan(24) INFO: local (127.0.0.1) trap for switch 127.0.0.1 (main::parseTrap)
Oct 22 13:16:23 pfsetvlan(7) INFO: nb of items in queue: 1; nb of threads running: 0 (main::startTrapHandlers)
Oct 22 13:16:23 pfsetvlan(7) INFO: firewallRequest trap received for inline client: 00:1b:b1:8b:82:13. Modifying firewall. (main::handleTrap)
Oct 22 13:16:23 pfsetvlan(7) INFO: Instantiate a new iptables modification method. pf::ipset (pf::inline::get_technique)
Oct 22 13:16:23 pfsetvlan(7) INFO: MAC: 00:1b:b1:8b:82:13 stated changed, adapting firewall rules for proper enforcement (pf::inline::performInlineEnforcement)
Oct 22 13:16:23 pfsetvlan(7) INFO: finished (main::cleanupAfterThread)
No tags attached.
Issue History
2012-10-22 13:17fgaudreaultNew Issue
2012-10-22 13:18fgaudreaultTarget Version => 3.6.0
2012-10-22 13:21fgaudreaultAssigned To => fdurand
2012-10-22 13:21fgaudreaultStatusnew => assigned
2012-10-22 16:45fgaudreaultNote Added: 0003226
2012-10-22 16:45fgaudreaultStatusassigned => resolved
2012-10-22 16:45fgaudreaultResolutionopen => no change required

Notes
(0003226)
fgaudreault   
2012-10-22 16:45   
It was a configuration issue. However, the checkup should have catch that. Will open another bug with lower priority.