[SQU] NTLM authentification / replacing microsoft proxy

From: Roidl Hr. <Roidl@dont-contact.us>
Date: Wed, 7 Mar 2001 12:30:50 +0100


does someone have experience with squid-2.5 and the NTLM auth module??

We use at the moment an microsoft proxy server and we hope to replace it
with squid.
The remaining problem is the authentification agains an NT Domain
No password dialog should appear, a user should have internet access if he
is in an NT Group.
I tried it with smbclient, but an dialog appered, so we throw this solution

Yesterday I configured squid-2.5 and tried the NTLM auth module.
My Config:

acl lraauth proxy_auth REQUIRED
http_access allow lraauth

auth_param ntlm program
auth_param ntlm children 5
auth_param ntlm max_challenge_reuses 0
auth_param ntlm max_challenge_lifetime 2 minutes

BUT it didn't work. Access is allways denied.

How can I test the authentification without squid?

Are there other possibilities to allow a user in a certain group (managed
under NT)
internet access. (net group internetuser /domain // smbclient // identd)???



