Re: [squid-users] Re: Re: Squid_ldap_kerb make

2010-03-05 Thread Nick Cairncross
Markus, Thank you (again) for your help. I hadn't realised that the principal name in question was the userPrincipalName attribute in AD - I was confusing it with the servicePrincipalName attribute. Of course that now makes sense. In fact, the method I followed to add the userPrincipalName

[squid-users] Re: Re: Squid_ldap_kerb make

2010-03-04 Thread Markus Moeller
Nick, The problem here is how the keytab entry was created. To authenticate against AD the userprincipalname attribute must be set to the same as the principla you want to authenticate. For a user it user the username e.g. us...@domain will have a userprinciplanme of us...@domain.