Rif: Re: [squid-users] Digest Authentication

From: <antonio.manfreda@dont-contact.us>
Date: Wed, 14 Jan 2004 16:24:30 +0100

Hello,

thanks for the explanation about the communication strategy beetween Squid
and the helper. I missed it in the config file.

Anyway, I still can't find any direct reference to HHA1 in RCF2617. What
does it correspond to?

Thank you in advance.
Regards

Antonio Manfreda
Easynet srl c/o Reale Mutua Assicurazioni
Ufficio Architettura Tecnica
Area Security
antonio.manfreda@realemutua.it
Tel. 011-431-2791

                                                                                                           
                      Henrik Nordstrom
                      <hno@squid-cache Per: antonio.manfreda@realemutua.it
                      .org> Cc: squid-users@squid-cache.org
                                               Oggetto: Re: [squid-users] Digest Authentication
                      14/01/2004 11.38
                                                                                                           
                                                                                                           

On Wed, 14 Jan 2004 antonio.manfreda@realemutua.it wrote:

> 1. Who does create the challenge for the user? Squid or the helper?

Squid.

> 2. In the case it is Squid, what does it pass to the helper on stdin?
> 3. And how does the helper reply? OK or ERR as usual?

2,3 is documented in the squid.conf comments

        === Parameters for the digest scheme follow ===

        "program" cmdline
        Specify the command for the external authenticator. Such
        a program reads a line containing "username":"realm" and
        replies with the appropriate H(A1) value base64 encoded.
        See rfc 2616 for the definition of H(A1).

See also the operation of the operation of the digest_pw_auth helper as
reference.

> 4. What is intended for HHA1, since I can find no reference to it in
> RFC2617? Maybe a different notation?

Search for H(A1) and you will find the correct references.

Regards
Henrik

Ai sensi della Legge 675/96 e successive modifiche/integrazioni si precisa
che le informazioni contenute nel presente messaggio, e negli eventuali
allegati, sono riservate e per uso esclusivo del destinatario. Pertanto è
vietata la copia, la diffusione e la rivelazione anche parziale dei dati in
esso contenuti alle persone non autorizzate dal medesimo. Chiunque lo
ricevesse per errore è pregato di restituirlo al mittente e di distruggere
il contenuto.
Received on Wed Jan 14 2004 - 08:24:34 MST

This archive was generated by hypermail pre-2.1.9 : Sun Feb 01 2004 - 12:00:06 MST