Re: [squid-users] Non-browser applications using NTLM+Squid?

From: Amos Jeffries <squid3_at_treenet.co.nz>
Date: Tue, 24 Jul 2012 10:45:45 +1200

On 24.07.2012 05:05, Alex Crow wrote:
> Josh,
>
> http_access deny requirentlmhosts
>
> after the allow rule should do it I think.
>
> Alex

If you have an "unprotected" requirentlmhosts ACL the auth challenge
will be displayed to anyone being tested against it.

What you need is this:

   # require auth from a certain set of hosts
   acl requirentlm proxy_auth REQUIRED
   acl requirentlmhosts src 1.1.1.1/255.255.255.255

   http_acccess deny requirentlmhosts !requirentlm

... followed by any other policies you have. Such as possibly an "allow
requirentlmhosts" to let these clients through with only authentication
and then the allow/deny polciy bits for non-requirentlmhosts clients.

Amos
Received on Mon Jul 23 2012 - 22:45:49 MDT

This archive was generated by hypermail 2.2.0 : Tue Jul 24 2012 - 12:00:02 MDT