d-users-boun...@lists.squid-cache.org] Namens
Kevin M???hlparzer
Verzonden: dinsdag 13 juni 2017 14:00
Aan: squid-users@lists.squid-cache.org
Onderwerp: [squid-users] Negotiate Kerberos Auth - BH Invalid request
Hello list,
I asked about a problem with NTLM-Authentication before. (BH SPNEG
Hello list,
I asked about a problem with NTLM-Authentication before. (BH SPNEGO request
invalid prefix; thats the error of the helper protocol
"helper-protocol=squid-2.5-ntlmssp" I used with NTLM, while basic works fine)
A user told me I should use negotiate_kerberos_auth instead of ntlm_auth.
Many thanks Markus, i solved everythings!
Sent: Tuesday, March 22, 2016 at 1:25 AM
From: "Markus Moeller"
To: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] NEGOTIATE Kerberos Auth
Hi,
1) Yes, you should see user@DOMAIN for kerberos authentication,
belonging to EXTERNALS.COM are joined to EXTERNALS.COM
Best Regards.
Sent: Saturday, March 19, 2016 at 12:28 AM
From: "Markus Moeller"
To: squid-users@lists.squid-cache.org
Subject: Re: [squid-users] NEGOTIATE Kerberos Auth
Hi,
Is you client a member of FATHER.COM or KID1.
i captured port 88 during handshake and i get:
eRR-C-PRINCIPAL-UNKNOWN
User's PC belonging to EXTERNALS.COM are joined to EXTERNALS.COM
Best Regards.
Sent: Saturday, March 19, 2016 at 12:28 AM
From: "Markus Moeller"
To: squid-users@lists.squid-cache.org
Subject: Re: [squi
Hi,
Is you client a member of FATHER.COM or KID1.FATHER.COM / KID2.FATHER.COM ?
Can you get a wireshark capture on your client on port 88 ? You should
see some TGS –REQs in the capture and I assume also TGS-REPs with error
messages. Can you share these error messages ?
Regards
M
Dear all,
i'm having a problem in configuring my squid 3.5.15 with negotiated kerberos authentication in my Mono Forest Multi Domains.
My FATHER.COM is a forest with 2 children: KID1 and KID2.
Like this: FATHER.COM -> KID1.FATHER.COM
-> KID2.FAT