<html><head></head><body><div>Hello,</div><div><br></div><div>Thank you for reply. I used your links and i configured squid to use FreeIPA/LDAP to authenticate. IMy main problem was with connection to LDAP server cos i didnt have "Domain Manager" credentials for ldap and according to that doc: <a href="http://www.freeipa.org/page/Howto/Change_Directory_Manager_Password"><a href="http://www.freeipa.org/page/Howto/Change_Directory_Manager_Password">http://www.freeipa.org/page/Howto/Change_Directory_Manager_Password</a></a> from that password depends other things in freeipa. I solve it such way:</div><div><br></div><div>1. Made backup of present configuration file - <span style="color: rgb(51, 51, 51); font-family: 'Liberation Sans', 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 14px; line-height: 20px; widows: 1; background-color: rgb(255, 255, 255);">dse.ldif</span></div><div>2. Changed password accroding to link:</div><div><br></div><div><a href="http://directory.fedoraproject.org/docs/389ds/howto/howto-resetdirmgrpassword.html">http://directory.fedoraproject.org/docs/389ds/howto/howto-resetdirmgrpassword.html</a></div><div><br></div><div>3. Create LDAP user for squid like for ejabberd in this how to:</div><div><br></div><div><a href="http://www.freeipa.org/page/EJabberd_Integration_with_FreeIPA_using_LDAP_Group_memberships">http://www.freeipa.org/page/EJabberd_Integration_with_FreeIPA_using_LDAP_Group_memberships</a></div><div><br></div><div>4. Restored backup of dse.ldif</div><div><br></div><div>5. Configured Squid to use ldap with new creditentials according to your link: <a href="https://workaround.org/squid-ldap/">https://workaround.org/squid-ldap/</a></div><div><br></div><div>Everything is working like i was expected. Thank you for help</div><div><br></div><div>//holo</div><div><br></div><div><br></div><div><br></div><div>On Sat, 2015-11-21 at 06:53 +0100, Natxo Asenjo wrote:</div><blockquote type="cite"><div dir="ltr">hi,<br><div class="gmail_extra"><br><div class="gmail_quote">On Fri, Nov 20, 2015 at 10:47 PM, holo <span dir="ltr"><<a href="mailto:holosian@gmail.com" target="_blank">holosian@gmail.com</a>></span> wrote:<br><blockquote type="cite"><div><div>Hello</div><div><br></div><div>How can i find FreeIPA ldap creditentials? I want to try to configure Squid in similar way like it is described here for ejabberd:</div><div><br></div><div><a href="http://www.freeipa.org/page/EJabberd_Integration_with_FreeIPA_using_LDAP_Group_memberships" target="_blank">http://www.freeipa.org/page/EJabberd_Integration_with_FreeIPA_using_LDAP_Group_memberships</a></div><span class=""></span><br></div><br></blockquote></div><br></div><div class="gmail_extra">I do not understand the question. Do you want to user ldap with squid? <br><br></div><div class="gmail_extra">Then you need to configure an authentication helper in squid. You will find how to do that in the squid wiki:<br><br><a href="http://wiki.squid-cache.org/ConfigExamples/Authenticate/Ldap">http://wiki.squid-cache.org/ConfigExamples/Authenticate/Ldap</a><br><br></div><div class="gmail_extra">And for squid acls dependeing on ldap group membership take a look at the examples here:<br><br><a href="https://workaround.org/squid-ldap/">https://workaround.org/squid-ldap/</a><br><br></div><div class="gmail_extra">If you have trouble configuring squid, then you should ask on the squid mailing list (very active, very helpful). <br></div><div class="gmail_extra"><div class="gmail_signature">--<br>Groeten,<br>natxo</div>
</div></div>
</blockquote></body></html>