Multi-Site PacketFence Deployment

Job ID: 40164720

Budget: €1,500 – €3,000 EUR

I want to roll out PacketFence across several offices and datacentres and need it designed, installed, and fully tested so our users and devices can connect seamlessly and securely. High availability is mandatory, so the build should include redundant nodes and database replication that can survive a full-site outage without losing service.

Authentication & authorisation
• Our primary user flow is SAML with MS Entra ID; staff should hit the captive portal, bounce to Entra for login, and come back with the right role and VLAN automatically assigned.
• Device compliance has to plug into both Intune and Lansweeper so non-compliant machines are quarantined or dropped into a remediation VLAN immediately.
• IoT devices and printers will authenticate by MAC address today, but I also want the framework in place for certificate-based auth tomorrow.
• Guests or visiting partners should land on a branded captive portal, self-register (or receive a sponsor code), and be steered into a time-limited network segment.

Network features
Dynamic VLAN assignment is essential; user role, compliance posture, or device type must dictate where the switch drops the port. All major switch vendors on site use 802.1X or MAC-Auth, so the design must accommodate both.

Deliverables
1. Detailed architecture and build documentation (HA topology, VLAN mapping, switch/NAC flows).
2. Production-ready PacketFence cluster deployed, integrated with Entra ID, Intune, Lansweeper, and our switch infrastructure.
3. Captive portal branded and tested for staff, guests, IoT, and printers.
4. Failover, compliance, and authentication test plans with pass/fail results.
5. Knowledge-transfer session and final hand-over checklist.

Let me know your relevant PacketFence experience and a rough timeline for each milestone so we can move ahead quickly.