On Tue, 13 Jan 2004, Tim Neto wrote:

> The undocumented (in Squid 2.5.STABLE1) parameter of "external" was the 
> barrier to getting LDAP group control.  The group control is working 
> very well.

I would recommend upgrading. See http://www.squid-cache.org/bugs/v2/2.5/ 
for reasons why..

> I recommend placing the group allow ACL definitions before the deny 
> definitions in the squid.conf file.   Hopefully the updated man page for 
> squid_ldap_group reflects this?

The man page of squid_ldap_group does not explain the logics of
http_access. This is explained in depth in the Squid FAQ chapter 10 and
numerous other places.

Regards
Henrik

Reply via email to