[SQU] NTLM Authentication and Frontpage/IIS/Exchange

From: Palmer J.D.F. <J.D.F.Palmer@dont-contact.us>
Date: Thu, 30 Nov 2000 16:54:24 -0000

Hello,

I am new to the list and therefore apologise for asking you 'noddy'
questions, but I'm a bit stuck.

The scenario:

Here at the University of Wales Swansea we are running Squid on Red hat 6.0
and at present all student web (http) traffic goes through this cache (or
its backup box). It is my aim to route all staff traffic through this cache
also, the problem is that several of our web servers and all email servers
are NT boxes running a combination of Exchange 5.5, IIS 4 or IIS 5.
We have 2 domains, each having a primary and secondary domain controller.

However if I route through the cache no one can authenticate to the various
NT servers (to either read email via the web or to publish webs via
frontpage), I realise that it is possible to use basic authentication but it
is not really an option here.

So I have built myself a development cache running Suse 7 and Squid
2.4-20001129, I have patched this version of squid with the NTLM patch and
have managed to compile it successfully. But the problem I have is that it
doesn't seem to make any difference.

I have read that a few of you have had success in getting ntlm_auth to work,
so I was hoping that someone would be able to tell what I'm missing out or
doing wrong.

Do I need to specify the domain controllers somewhere?

The configure options that I used were

--enable-ntlm-authentication
--enable-basic-authentication
--enable-auth-modules='NCSA NTLM'
--enable-ntlm-auth-modules="NTLMSSP"

and I uncommented the: # athenticate_program_ntlm
from the squid.conf file.

But to no avail.

Regards,

Jezz Palmer

****************************************
Jezz Palmer.
Internet Systems Officer.
Library and Information Services
University of Wales, Swansea
Singleton Park
Swansea
SA2 8PP
Tel 01792 513260
****************************************

--
To unsubscribe, see http://www.squid-cache.org/mailing-lists.html
Received on Thu Nov 30 2000 - 09:56:49 MST

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:56:45 MST