Friends,
I´m using squid with auth_ntlm against Microsoft AD, and it s working
pretty fine (with IE, at least). It does not work with Firefox, though.
I´ve tried using auth_msnt, wich worked fine, but I need IE user to use
pass-through authenticantion. Is there anyway to use two auth
Try this:
auth_param ntlm program /usr/local/libexec/squid/ntlm_auth DOMAIN\dcserver
where DOMAIN is your NT/AD domain name and dcserver is the name of you
Domain Controller that runs as PDC.
Note that your Linux box that runs Squid *must* be able to resolve the PDC address. To
ensure that,
I´ve heard it´s possible to use MS NT/AD Groups if you use wb_ntlmauth. I´ve
found this auth mechanism too hard to configure, though (it requires you to
configure winbind - and maybe kerberos, also). I know nothing about
msnt_auth.
Here we use ntlm_auth. We´ve chosen not to use groups because
Fellows,
I´m running squid 2.5.STABLE9 on a Fedora 4 server, with ntlm auth against
Microsoft Active Directory, using pass-through authemtication. The problem
is that, if we have some visitor (i.e., someone who did not logon on the
Active Directory domain and/or whose machine is not a domain