[squid-users] SQUID+NTLM

From: Marcin Wasilewski <[email protected]>
Date: Wed, 13 Jul 2005 12:20:33 +0200

Hello,

I'm tryind to set up this funcionality but it doesn't work.
What I want to do is to pass AD global group called InternetUsers through
SQUID.

I'm using Debian 3.1(stable), SQUID 2.5Stable9, SAMBA 3.0.14a-3 and winbind
3.0.14a-3. Everything was installed from packages.

The debian machine is added to the AD, so I can use: wbinfo -t which
returns: checking the trust secret via RPC calls succeeded, wbinfo -g is
also working fine and returns list of AD groups.

Next I wanted to test:
/usr/bin/ntlm_auth --helper-protocol=squid-2.5-basic
domain+Administrator password
ERR

I use RADIUS authentication form my domain, but admin account has static
password.

I'm trying to do everything as written in:
http://www.squid-cache.org/Doc/FAQ/FAQ-23.html#ss23.5

When I start winbind in the logfile (log.winbind) i have:

[2005/07/13 12:17:06, 1] nsswitch/winbindd.c:main(864)
  winbindd version 3.0.14a-Debian started.
  Copyright The Samba Team 2000-2004

but when I want to start SQUID it writes there lot of messagess:
[2005/07/13 11:51:33, 0] nsswitch/winbindd.c:process_loop(748)
  process_loop: Invalid request size from pid 9585: 1304 bytes sent, should
be 1824
  This usually means that you are running old wbinfo, pam_winbind or
libnss_winbind clients

What am I doing wrong?

Best regards
Marcin
Received on Wed Jul 13 2005 - 04:19:41 MDT

This archive was generated by hypermail pre-2.1.9 : Mon Aug 01 2005 - 12:00:02 MDT