Hello Every Body,I am trying to get squid3 (latest on debain 8 repositories ) to authenticate clients using active directory . I used the tutorial recommend for debian :http://wiki.bitbinary.com/index.php/Active_Directory_Integrated_Squid_Proxy#Configure_Squid and after a lot of tweaks to several
] Squid and active directory
http://www.squid-cache.org/Versions/v3/3.1/manuals/squid_ldap_group.html
http://lists.squid-cache.org/pipermail/squid-users/2015-October/007445.html
http://www.squid-cache.org/mail-archive/squid-users/200210/0725.html
http://www.squid-cache.org/mail-archive/squid
http://www.squid-cache.org/Versions/v3/3.1/manuals/squid_ldap_group.html
http://lists.squid-cache.org/pipermail/squid-users/2015-October/007445.html
http://www.squid-cache.org/mail-archive/squid-users/200210/0725.html
http://www.squid-cache.org/mail-archive/squid-users/200309/0053.html
Le 30/11/2014 09:08, Amos Jeffries a écrit :
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On 30/11/2014 12:52 a.m., David Touzeau wrote:
Le 26/11/2014 11:27, Amos Jeffries a écrit : On 24/11/2014 12:01
a.m., David Touzeau wrote:
Hi
We have connected 3.5.0.2-20141121-r13666 with Active
Le 26/11/2014 11:27, Amos Jeffries a écrit :
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On 24/11/2014 12:01 a.m., David Touzeau wrote:
Hi
We have connected 3.5.0.2-20141121-r13666 with Active Directory. It
seems where there are spaces in login account squid use only the
last argument.
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On 30/11/2014 12:52 a.m., David Touzeau wrote:
Le 26/11/2014 11:27, Amos Jeffries a écrit : On 24/11/2014 12:01
a.m., David Touzeau wrote:
Hi
We have connected 3.5.0.2-20141121-r13666 with Active
Directory. It seems where there are spaces in
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On 24/11/2014 12:01 a.m., David Touzeau wrote:
Hi
We have connected 3.5.0.2-20141121-r13666 with Active Directory. It
seems where there are spaces in login account squid use only the
last argument.
For example for an account Jhon smith squid
Hi
We have connected 3.5.0.2-20141121-r13666 with Active Directory.
It seems where there are spaces in login account squid use only the last
argument.
For example for an account Jhon smith squid use smith only
For example for an account Dr Jhon smith squid use smith only
In 3.3.13 there is
I'm sure this has been asked before - working on a squid box that is to
Auth to AD. Unable to authenticate and getting error in squid cache log:
WARNING: could not bind to binddn 'Invalid credentials'
--
Rick Chisholm
Systems Administrator
Parallel42
I'm sure this has been asked before - working on a squid box that is to
Auth to AD. Unable to authenticate and getting error in squid cache log:
WARNING: could not bind to binddn 'Invalid credentials'
By default, Windows doesn't allow anon binds, are you using a bind account
and if so are the
Yes using -D and -w switches, with creds known to work on other devices
doing ldap (MFDs for one).
Redact the sensitive parts, and post the actual cmd in your conf. Likely
the domain/user syntax is wrong.
Dear Pro's
I am trying to configure a squid proxy in Windows 2003 Active Directory
Environment. I need to make the migration from MS ISA Proxy to Squid 3.0
Stable13 on CentOS 5.2
My primary goal is;
1. authenticate users without asking username/password (i mean like how a
normal windows
Truth Seeker wrote:
Dear Pro's
I am trying to configure a squid proxy in Windows 2003 Active
Directory Environment. I need to make the migration from MS ISA Proxy
to Squid 3.0 Stable13 on CentOS 5.2
My primary goal is; 1. authenticate users without asking
username/password (i mean like how a
Jeffries squ...@treenet.co.nz wrote:
From: Amos Jeffries squ...@treenet.co.nz
Subject: Re: [squid-users] Squid + Kerberos + Active Directory
To: Truth Seeker truth_seeker_3...@yahoo.com
Cc: Squid maillist squid-users@squid-cache.org
Date: Tuesday, June 2, 2009, 2:53 PM
Truth Seeker wrote:
Dear
!!!
--- On Tue, 6/2/09, Amos Jeffries squ...@treenet.co.nz wrote:
From: Amos Jeffries squ...@treenet.co.nz
Subject: Re: [squid-users] Squid + Kerberos + Active Directory
To: Truth Seeker truth_seeker_3...@yahoo.com
Cc: Squid maillist squid-users@squid-cache.org
Date: Tuesday, June 2, 2009, 2
HI I am new to squid and I am having a few problems setting up Active
Directory authentication
I have squid running on a windows xp computer in a windows server 2003
domain
I would like to have all internet access to proxy through this computer and
then log
The user that was logged on
AM
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
I have tried your configuration... but I have the same problem.
squid version is 3.0.5
in attachment there is one of my tested squid.conf.
only IE7 is working properly
thanks in advance
nairb rotsak wrote:
Always
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
On Sat, Nov 1, 2008 at 12:37 AM, Amos Jeffries [EMAIL PROTECTED] wrote:
Um, I'm not so sure the people having trouble are using the right helper.
There is a thing calling itself 'ntlm_auth' bundled with squid 3.0 and
Squid-2 releases
Message
From: matlor [EMAIL PROTECTED]
To: squid-users@squid-cache.org
Sent: Thursday, October 30, 2008 9:15:55 AM
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
I have tried your configuration... but I have the same problem.
squid version is 3.0.5
in attachment there is one
for several years now.
- Original Message
From: Chris Nighswonger [EMAIL PROTECTED]
To: matlor [EMAIL PROTECTED]
Cc: squid-users@squid-cache.org
Sent: Wednesday, October 29, 2008 8:48:39 AM
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
On Tue, Oct 28, 2008 at 6
: Thursday, October 30, 2008 9:15:55 AM
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
I have tried your configuration... but I have the same problem.
squid version is 3.0.5
in attachment there is one of my tested squid.conf.
only IE7 is working properly
thanks in advance
Hi,
At 14.00 28/10/2008, Josh Haft wrote:
Firefox can't grab NTLM creds like IE does.
This is really a VERY wrong assertion.
Firefox supports all Squid authentication schema (Basic, Digest NTLM
and Negotiate) starting from version 1.5, while this is true for
Internet Explorer starting from
How can I solve my problem?
what's wrong?
Have I to post my squid.conf?
thanks
Guido Serassio wrote:
Hi,
At 14.00 28/10/2008, Josh Haft wrote:
Firefox can't grab NTLM creds like IE does.
This is really a VERY wrong assertion.
Firefox supports all Squid authentication schema (Basic,
On Tue, Oct 28, 2008 at 6:18 AM, matlor [EMAIL PROTECTED] wrote:
I have configured squid with winbind integrated in the active directory of a
windows 2003 domain.
If I browse internet trough IE 7 everething is ok, no user and password
prompted, because of the common login. While, if I open
years now.
- Original Message
From: Chris Nighswonger [EMAIL PROTECTED]
To: matlor [EMAIL PROTECTED]
Cc: squid-users@squid-cache.org
Sent: Wednesday, October 29, 2008 8:48:39 AM
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
On Tue, Oct 28, 2008 at 6:18 AM
: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
On Tue, Oct 28, 2008 at 6:18 AM, matlor [EMAIL PROTECTED] wrote:
I have configured squid with winbind integrated in the active directory of a
windows 2003 domain.
If I browse internet trough IE 7 everething is ok, no user and password
Sent: Wednesday, October 29, 2008 8:48:39 AM
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
On Tue, Oct 28, 2008 at 6:18 AM, matlor [EMAIL PROTECTED] wrote:
I have configured squid with winbind integrated in the active directory of a
windows 2003 domain.
If I browse internet
.
- Original Message
From: Chris Nighswonger [EMAIL PROTECTED]
To: matlor [EMAIL PROTECTED]
Cc: squid-users@squid-cache.org
Sent: Wednesday, October 29, 2008 8:48:39 AM
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
On Tue, Oct 28, 2008 at 6:18 AM, matlor [EMAIL PROTECTED
-users] SQUID + FIREFOX + ACTIVE DIRECTORY
On Wed, Oct 29, 2008 at 10:23 AM, nairb rotsak [EMAIL PROTECTED] wrote:
I am totally confused by this statement?.. as I have 300 people using firefox
right now.. using Ubuntu 6.06, Samba3, Squid2.. and not a single one gets a
user/pass prompt? I am
PROTECTED]; squid-users@squid-cache.org
Sent: Wednesday, October 29, 2008 9:31:32 AM
Subject: Re: [squid-users] SQUID + FIREFOX + ACTIVE DIRECTORY
On Wed, Oct 29, 2008 at 10:23 AM, nairb rotsak [EMAIL PROTECTED] wrote:
I am totally confused by this statement?.. as I have 300 people using
firefox
Chris Nighswonger wrote:
On Wed, Oct 29, 2008 at 5:16 PM, nairb rotsak [EMAIL PROTECTED] wrote:
http_access allow all NTLMUsers
Does the 'all' trump the 'NTLMUsers' acl here?
Chris
The all is redundant. The all ACL will always match, so the test
next falls to checking the
Chris Robertson wrote:
Chris Nighswonger wrote:
On Wed, Oct 29, 2008 at 5:16 PM, nairb rotsak [EMAIL PROTECTED] wrote:
http_access allow all NTLMUsers
Does the 'all' trump the 'NTLMUsers' acl here?
Chris
The all is redundant. The all ACL will always match, so the test
next falls
On ons, 2008-10-29 at 14:16 -0700, nairb rotsak wrote:
http_access allow all NTLMUsers
http_access allow our_networks
The our_networks line can not be reached.
This should probably be
http_access allow our_networks NTLMUsers
http_access deny all
Regards
Henrik
signature.asc
Description:
If I browse internet trough IE 7 everething is ok, no user and
password prompted, because of the common login. While, if I open
Firefox (2 or 3 version), it prompts for user and password.
Firefox can't grab NTLM creds like IE does.
Yep, as FireFox is not a Microsoft product and as it
I have configured squid with winbind integrated in the active directory of a
windows 2003 domain.
If I browse internet trough IE 7 everething is ok, no user and password
prompted, because of the common login. While, if I open Firefox (2 or 3
version), it prompts for user and password.
I have
Firefox can't grab NTLM creds like IE does.
On 10/28/08, matlor [EMAIL PROTECTED] wrote:
I have configured squid with winbind integrated in the active directory of a
windows 2003 domain.
If I browse internet trough IE 7 everething is ok, no user and password
prompted, because of the common
matlor wrote:
I have configured squid with winbind integrated in the active directory of a
windows 2003 domain.
If I browse internet trough IE 7 everething is ok, no user and password
prompted, because of the common login. While, if I open Firefox (2 or 3
version), it prompts for user and
I am looking at renaming my Active Directory domain. We currently use
Squid for internet access and I believe this uses Samba / NTLM to
authenticate the users
I was wondering if the only thing I need to do to keep squid running is
modify the SMB.CONF file to the new workgroup and realm to reflect
On tis, 2007-10-09 at 14:29 +0800, Thompson, Scott (WA) wrote:
I am looking at renaming my Active Directory domain. We currently use
Squid for internet access and I believe this uses Samba / NTLM to
authenticate the users
I was wondering if the only thing I need to do to keep squid running is
Hi Everyone.
I'm using SQUID 2.6 stable on Debian Etch authenticating users against an
Active Directory running on Windows 2003 Server.
And I got to say, it works great, I'm using squid_ldap_group directory to
only let the users navigate if they are on a group, for example GINTERNET.
Again, it
tis 2007-04-10 klockan 13:35 -0300 skrev Comisario, Alejandro:
Again, it work great, the thing is that, for example if the user went on
vacations, instead of getting the user out of the GINTERNET group, I disable
the account from AD to ensure the user won't log into the domain either.
Ok. so
Dear all,
Hi, please give me information to make connection between Squid and
Active Directory (Windows 2003 Server)
Thanks,
Jellf
* On 23/10/06 22:50 +0700, Jellf J B Nainggolan wrote:
| Dear all,
|
| Hi, please give me information to make connection between Squid and
| Active Directory (Windows 2003 Server)
http://kb.papercutsoftware.com/Main/ConfiguringSquidProxyToAuthenticateWithActiveDirectory
How you failed to find
Thanks man, i can manage my LAN using squid.
Odhiambo WASHINGTON wrote:
* On 23/10/06 22:50 +0700, Jellf J B Nainggolan wrote:
| Dear all,
|
| Hi, please give me information to make connection between Squid and
| Active Directory (Windows 2003 Server)
Dear sir
I did all of your recommanded from document step by step
I succeeded to joined to the domain and active directory , i can see the
domain users and
groups
kinit command works properly,
net ads testjoin
Join is OK
net ads join administrator
Joined 'squid-server' to realm 'TEST.COM'
Dear sir
I did all of your recommanded from document step by step
I succeeded to joined to the domain and active directory , i can see the
domain users and
groups
kinit command works properly,
net ads testjoin
Join is OK
net ads join administrator
Joined 'squid-server' to realm 'TEST.COM'
Hi guys
Can anyone help me
I have configure the squid to authenticate against Acive directory,but it
doesn't work,
How squid works with samba,when i set the auth_param with ntlm method how
squid find the domain or how connect to samba,
I've to ntlm_auth module ,one of them are in squid module
are you using winbind+ntlm auth?
--- Jamie Heckford [EMAIL PROTECTED]
wrote:
Abbas Salehi wrote:
Dear Squid Users,
Does squid work with Microsoft Active directory,
If anybody knows about this would you please help
me ASAP,
Depends what you mean by 'work' ;)
We have it
Dear Squid Users,
Does squid work with Microsoft Active directory,
If anybody knows about this would you please help me ASAP,
Regards
Abbas Salehi
ISiran Company
Abbas Salehi wrote:
Dear Squid Users,
Does squid work with Microsoft Active directory,
If anybody knows about this would you please help me ASAP,
Depends what you mean by 'work' ;)
We have it running very well here with our users IE sessions
automagically authing against AD for squid
-cache.org
Sent: Wednesday, July 06, 2005 1:37 PM
Subject: [squid-users] Squid with Active Directory
Dear Squid Users,
Does squid work with Microsoft Active directory,
If anybody knows about this would you please help me ASAP,
Regards
Abbas Salehi
ISiran Company
Hello,
I have Linux System with Squid and around 100 Domain clients. What I
want ActiveDirectory User based internet access .
Like
Some Active Directory users have total access to internet all
domains, all protocols, and all else and some users should not be
able to open a specific site
On Thu, 4 Nov 2004, John wrote:
Thanks for the reply. Does this mean that I need to set up and run samba
server on the squid box?
Only if you want to use the ntlm authentication scheme.
Provided you are happy with the basic authentication scheme then the LDAP
helpers works just fine with Active
On Thu, 4 Nov 2004 11:41:21 +0100 (CET), Henrik Nordstrom
[EMAIL PROTECTED] wrote:
On Thu, 4 Nov 2004, John wrote:
Thanks for the reply. Does this mean that I need to set up and run samba
server on the squid box?
Only if you want to use the ntlm authentication scheme.
Provided you are
Hi
My site is moving away from LDAP to Active Directory for authentication
for our internet users going through the Squid proxy server. In order to get
squid to talk to active
directory for user authentication, it is also a requirement to set up,
configure and run samba? I had hoped that
You'll need to edit your samba config file for your particular domain,
start winbindd, and add the following to your squid.conf:
auth_param ntlm program /usr/bin/ntlm_auth --helper-protocol=squid-2.5-ntlmssp
auth_param ntlm children 20
auth_param ntlm max_challenge_reuses 0
auth_param ntlm
to include
samba?
Thanks regards
John
- Original Message -
From: Matt Alexander [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Sent: Thursday, November 04, 2004 12:03 AM
Subject: Re: [squid-users] Squid and Active Directory
You'll need to edit your samba config file for your particular domain
- Original Message -
From: Matt Alexander [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Sent: Thursday, November 04, 2004 12:03 AM
Subject: Re: [squid-users] Squid and Active Directory
You'll need to edit your samba config file for your particular domain,
start winbindd, and add the following
Greetings!
I currently have linux and windows boxes.
I want to authenticate users of squid by ms active directory.
Is there any guide on this?
Thank you in advance.
fritz www.mesedilla.com
---
+ Basta Ikaw Lord
59 matches
Mail list logo