Re: [squid-users] Squid dialog NTLM

From: Angel Mieres <[email protected]>
Date: Tue, 13 Nov 2007 10:31:54 +0100

El mar, 13-11-2007 a las 02:19 +0100, Henrik Nordstrom escribió:
> On tor, 2007-11-08 at 17:34 +0100, Angel Mieres wrote:
>
> > This allow me to authenticate transparently throught the proxy but if an
> > user want to surf and it's not registered on Active Directory, the proxy
> > ask him for an user and a password, is there anyway force proxy to don't
> > show this dialog?
>
> No, it's the client (browser) which shows the dialog when the user is
> not already logged in..
>
> Regards
> Henrik

Ok. Is there anyway to solve this?, I remove proxy_auth directive and Im
trying to solve this with:

...
external_acl_type ldap_group ttl=0 children=5 %
LOGIN /usr/local/squid/lib/wbinfo_group.pl
...

When squid detects an username check the AD group and deny or allow
access. But when I try to access from linux (for example) ask me again
for an user and a password. When I open the browser an entry in
access.log show me this(before ask me for enter user & pass):
1194944246.564 2 X.X.X.X TCP_DENIED/407 3969 GET
http://www.google.com/ - NONE/- text/html

Is anyway put on this "nobody" user on an acl and deny the 2nd request?

-- 
Angel Mieres - amieres@eneotecnologia.com
Administrador de Sistemas
ENEO Tecnologia SL Pol. PISA
C/ Manufactura 6, P1, 3B Mairena del Aljarafe
41927 - Sevilla
Telf.- (+34) 955 60 11 60
Received on Tue Nov 13 2007 - 02:33:50 MST

This archive was generated by hypermail pre-2.1.9 : Sat Dec 01 2007 - 12:00:02 MST