[Freeipa-users] Squid authentication in FreeIPA

holo holosian at gmail.com
Mon Nov 23 08:51:53 UTC 2015


Hello
Yes that was my thread on severfault :)
I solve my problem by using LDAP authentication instead of Kerberos and everything is working like i was expected right now. I needed login/password form in browser what is not supported by kerberos authentication in squid.
//holo
On Sat, 2015-11-21 at 06:57 +0100, Natxo Asenjo wrote:
> hi holo,
> 
> 
> On Fri, Nov 20, 2015 at 11:21 PM, holo <holosian at gmail.com> wrote:
> > Thank you for your reply. 
> > 
> > I think i wasnt clear enough. Clients of proxy server are not
> > kerberized. I want to just authenticate them for proxy use in
> > kerberos DB when they are trying to use it (just by popup like in
> > NTLM). Is such thing possible with kerberos? I saw on yt such thing
> > wasa posible with AD.
> > 
> > //holo
> > 
> did you ask this question in serverfault as well :-) ?
> 
> http://serverfault.com/questions/737902/squid-kerberos-authentication
> -no-popup/737909#737909
> 
> If you require ntlm, then you should joing the squid host to an AD
> realm, I do not think this will work with freeipa because it does not
> do ntlm as far as I know.
>  
> --
> Groeten,
> natxo
> -- 
> Manage your subscription for the Freeipa-users mailing list:
> https://www.redhat.com/mailman/listinfo/freeipa-users
> Go to http://freeipa.org for more info on the project
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20151123/8285ee57/attachment.htm>


More information about the Freeipa-users mailing list