[squid-users] msnt_auth doesn't listen to denyusers/allowusers settings

From: Koen Van de Velde <koen.vdvelde@dont-contact.us>
Date: Thu, 26 Sep 2002 09:03:40 +0200

Hello squid-lovers,
I read all kind of documentation -including the FAQ's- and looked in the
maillist-archive but couldn't find a solution for my problem :
I want to use the allowusers/denyusers-settings from msnt_authentication on
my Squid Proxy and this doesn't seem to work. I hope one of you can help me
with this one.

The version I use was installed with the squid-2.4.STABLE6-6.7.3.i386.rpm
from Redhat.
this is my /etc/squid/msntauth.conf - file :
        server PROVHEMXM1 PROVHEMXM2 PROVHEMXM
        allowusers /usr/local/squid/etc/allowusers
        denyusers /usr/local/squid/etc/denyusers
(the two NT4-domain-controllers are listed in /etc/hosts)

- If the allowusers and denyusers-files are empty, everything seems to work.

/usr/lib/squid/msnt_auth returns OK for valid domain-users, and ERR for
non-domain users.
These incorrect logins are logged in the /var/log/secure log.
- If I put some usernames in the allowusers-file, the authentication stops
working. All usernames return ERR (domain-user or not, allowed-user or not)
AND nothing is put in the log-files /var/log/*
- If I put some usernames in the denyusers-file, the users are still
authenticated. Each login as a domain-user returns OK (even if it is a
member of the denyusers-file). Non-domainusers still return ERR.

These are the rights on the config-files :
-rw-r--r-- 1 root root 0 Sep 25 15:49 allowusers
-rw-r--r-- 1 root root 13 Sep 25 23:47 denyusers
-rw-r--r-- 1 root root 103 Sep 25 16:41 msntauth.conf
-rw-r--r-- 1 root root 91798 Sep 25 17:06 squid.conf

If someone has a brilliant idea to get this strange behaviour solved ...
please let me know.

Thanks in advance,

Koen Van de Velde.
PROVIRON NV.
Received on Thu Sep 26 2002 - 01:03:42 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:10:25 MST