Re: [squid-users] Always ntlm .... Squid + AD

From: Henrik Nordstrom <henrik@dont-contact.us>
Date: Thu, 30 Aug 2007 00:18:01 +0200

On ons, 2007-08-29 at 17:42 +0200, Alexandre Mackow wrote:
> Hi,
> I configure my squid with ntlm authentification ....
> Samba + Kerberos + Winbind are ok ... The linux join the win2k3 domain ...
> I can't connect my client through the proxy, I got a log :
> "[2007/08/29 17:31:30, 0] utils/ntlm_auth.c:winbind_pw_check(429)
> Login for user []\[AlexandreMackow@mydomain.local]@[Myposte] failed
> due to [winbind client not authorized to use winbindd_pam_auth_crap.
> Ensure permissions on /var/run/samba/winbindd_privileged are set correctly.]

Make sure your cache_effective_user is member of the group owning
the /var/run/samba/winbindd_privileged directory, and that you DO NOT
specify cache_effective_group in squid.conf... (repeat: DO NOT
specify..)

REgards
Henrik

Received on Wed Aug 29 2007 - 16:18:07 MDT

This archive was generated by hypermail pre-2.1.9 : Sat Sep 01 2007 - 12:00:03 MDT