[squid-users] loosing ntlm connection

From: ftiaronsem <forum_at_b1online.de>
Date: Wed, 09 Nov 2011 23:54:12 +0100

Hello alltogether

This one gives me a headache. I joined my ubuntu 10.04 LTS server
running squid 2.7.STABLE7 and samba 3.4.7 to my windows 2008 domain
without problems.

Squid also started fine using

/usr/bin/ntlm_auth --helper-protocol=squid-2.5-ntlmssp
/usr/lib/squid/wbinfo_group.pl

for authentication. However after some while, some users get DENIED
messages. A few hours after that, squid crashes completly complaining:

2011/11/08 15:22:56| WARNING: up to 50 pending requests queued
2011/11/08 15:22:56| Consider increasing the number of ntlmauthenticator
processes to at least 60 in your config file.
FATAL: Too many queued ntlmauthenticator requests (51 on 10)

Winbind logs show up a lot of stuff like

[2011/11/08 15:19:06, 0]
winbindd/winbindd_dual.c:186(async_request_timeout_handler)
   async_request_timeout_handler: child pid 25224 is not responding.
Closing connection to it.
[2011/11/08 15:19:06, 1] winbindd/winbindd_util.c:303(trustdom_recv)
   Could not receive trustdoms

So i am tempted to conclude that this is a samba/winbind problem.
However I am often getting similar errors in the winbind logs at other
sites, which run smoothly.

Do you have similar warnings in your error logs? Judgig by your
experience, what would you think is the most likely fix? Upgrading samba?

Thanks in advance

B Brandt
Received on Wed Nov 09 2011 - 22:54:47 MST

This archive was generated by hypermail 2.2.0 : Thu Nov 10 2011 - 12:00:02 MST