[squid-users] Re: Issue with Squid_ldap_group (Windows) ?

From: Raf <luchinaraff_at_tiscali.it>
Date: Wed, 20 Nov 2013 07:08:35 -0800 (PST)

Ok.

I found that in squid 3.x the ldap helper is change from previous release ;
instead of squid_ldap_group there’s the helper basic_ldap_auth (located in
/usr/lib64/squid on Fedora 18 x64).

( http://www.squid-cache.org/Versions/v3/3.2/RELEASENOTES.html#ss4.2 )

After some problem with firewall configuration and some test with
basic_ldap_auth inserting the line below in squid.conf associated with ACL
ldap-auth can gain internet access only to active directory user.

auth_param basic program /usr/lib64/squid/basic_ldap_auth -R -b
"dc=domain,dc=local" -D "CN=ADUser,OU=OU-ADUser,dc=domain,dc=local" -w
pwd-ADUser -f sAMAccountName=%s -h IP-Ldap-Server:389
.
.
.
acl ldap-auth proxy_auth REQUIRED
http_access allow ldap-auth

Now I must find how can I do with user belong to a single group present in
active directory…previous version external acl helpers was squid_ldap_group.
In squid 3.3.2 seems to be ext_ldap_group_acl …but I can’t find it !!!

…and the story goes on …

--
View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Issue-with-Squid-ldap-group-Windows-tp4663221p4663395.html
Sent from the Squid - Users mailing list archive at Nabble.com.
Received on Wed Nov 20 2013 - 15:09:23 MST

This archive was generated by hypermail 2.2.0 : Thu Nov 21 2013 - 12:00:06 MST