Configuration Reference

[alerting]
admin_netbiosname
emailaddr
log
smtpserver
wins_server

[arp]
cleanshutdown
dhcp_timeout
gw_timeout
heartbeat
interval
strobe
stuffing
timeout

[database]
db
host
pass
port
user

[dhcp]
isolation_lease
isolation_scopes
registered_lease
registered_scopes
unregistered_lease
unregistered_scopes

[expire]
iplog
node

[general]
caching
dhcpservers
dnsservers
domain
hostname
logo

[interface]
gateway
ip
mask
type

[logging]
facility
priority
verbosity

[network]
dhcp
dhcpdetector
mode
named
nat
rogueinterval

[passthroughs]
This section allows you to create passthroughs to HTML content or remote addresses/networks. Here's an example:

packetfence=http://www.packetfence.org

The above will allow 80/tcp traffic to the resolved IP address (the LHS value is arbitrary). Passthroughs can also take the form of:

test=192.168.100.10/23

which would allow full IP to all 512 destination addresses.

[ports]
admin
allowed
listeners
open
redirect

[proxies]
This section allows you to configure locally proxied content. We typically use this to proxy tools like Stinger rather than having to continually download the latest version. Ex:

tools/stinger.exe=http://download.nai.com/products/mcafee-avert/stinger.exe

The Stinger utility could then be accessed at https://pfhostname/proxies/tools/stinger.exe.

[registration]
aup
auth
button_text
completemsg
expire_deadline
expire_mode
expire_window
maxnodes
queuesize
range
skip_deadline
skip_mode
skip_reminder
skip_window

[scan]
host
live_tids
pass
port
registration
ssl
user

[scope]
gateway
network
range

[services]
dhcpd
httpd
named
nessusd
pfdetect
pfmon
pfredirect
snort
violationlog

[trapping]
blacklist
detection
immediate
passthrough
range
redirecturl
redirlocal
redirtimer
registration
testing
whitelist