Displaying 20 results from an estimated 10000 matches similar to: "Samba PDC with Squid NTLM_AUTH"
2008 Jun 11
1
Squid/ntlm_auth issues with two user accounts (all other accounts on the domain work).
Hi all,
I have just installed and configured a squid setup authenticating
against Active Directory using kerberos tickets and have achieved the
holy-grail of IT - Single Sign On!
The problem is that I have two users for whom is does not work.
The ntlm_auth logs show that for users that are properly authenticated
against squid we get the following (Usernames/Domains/Hosts have been
changed for
2005 Apr 01
1
ntlm_auth, samba PDC
Hello!
I want to provide ntlm authentification for my squid proxy users :-)
I have only samba PDCs.
But looks like winbind still doesn't work against samba PDC or I did
something wrong:
gopher:~ # wbinfo -a user0%user0
plaintext password authentication failed
error code was NT_STATUS_CANT_ACCESS_DOMAIN_INFO (0xc00000da)
error messsage was: NT_STATUS_CANT_ACCESS_DOMAIN_INFO
Could not
2004 Apr 23
1
RES: Problems with ntlm_auth --helper-protocol=squid-2.5- ntlmssp
You should use the ntlm_auth module provided by samba.
-----Mensagem original-----
De: samba-bounces+ecarvalho=bmf.com.br@lists.samba.org
[mailto:samba-bounces+ecarvalho=bmf.com.br@lists.samba.org] Em nome de
Riccardo Baldanzi
Enviada em: quinta-feira, 22 de abril de 2004 16:51
Para: samba@lists.samba.org
Assunto: [Samba] Problems with ntlm_auth --helper-protocol=squid-2.5-ntlmssp
Hi Guys,
2003 Dec 18
2
ntlm_auth problem in Squid 2.5
Hi!
I have a problem with the ntlm_auth helper (samba-3.0.2) under squid. I
got the following from the cache.log:
[2003/12/18 15:36:48, 10] utils/ntlm_auth.c:manage_squid_request(1114)
Got 'YR' from squid (length: 2).
[2003/12/18 15:36:48, 10]
utils/ntlm_auth.c:manage_squid_ntlmssp_request(362)
got NTLMSSP packet:
[2003/12/18 15:36:48, 10]
2016 May 31
3
Using ntlm_auth with a non-Squid application
Hello
my goal is to write an authentication module for the Symfony php framework, which would provide SSO capabilities to browsers that are logged in an MS AD domain
and support the NTLMv2 protocol. Ideally this module would run on linux servers, and be portable, i.e. require as few non-php tools and network/firewall
settings as possible (that's why I eschewed the existing Apache modules
2003 Nov 11
1
ntlm_auth and squid authentication problems
Hi all,
I've a little problem using ntlm_auth with squid.
Scenario: Redhat 9, Samba 3 compiled, squid-2.5 compiled.
smb.conf:
[global]
encrypt passwords = Yes
winbind separator = \
winbind cache time = 10
template homedir = /home/%D/%U
template shell = /bin/bash
idmap uid = 10000-20000
idmap gid = 10000-20000
winbind uid = 10000-20000
winbind gid = 10000-20000
winbind enum users = yes
2004 Apr 22
1
Problems with ntlm_auth --helper-protocol=squid-2.5-ntlmssp
Hi Guys,
i've installed a Fedora Core 1 with samba 3 and squid 2.5 stable 3 (all
with redhat rpms).
Now i've joined our internal active directory and i see that "wbinfo -u",
"wbinfo -g" and "wbinfo -a user%password" works great.
ntlm_auth --helper-protocol=squid-2.5-basic works ok too but..
ntlm_auth --helper-protocol=squid-2.5-ntlmssp does respond only
2005 Nov 07
4
Urgent Samba / Squid NTLM Auth Problems
Hi,
We are having problems setting up a squid cache server to use NTLMv2
authentication to authenticate users against AD.
We have narrowed the problems down to being a problem between samba and
squid when using NTLMv2. It constantly moans about the password being wrong
when using squid, but doing a direct samba auth works fine. We have
(believedly) narrowed it down to this: the domain requires
2011 Oct 16
1
ntlm_auth NT_STATUS_INVALID_HANDLE with windbind
I should use an authenticated proxy with Squid, but I have a problem
with winbind.
I'm working on a PDC, debian squeeze with samba from backport (ver.
2:3.5.11~dfsg-1~bpo60+1 )
Here the problem: I can authenticate users.
/usr/bin/ntlm_auth --username=myname --domain=MYCOMPANY
password: XXXX
NT_STATUS_INVALID_HANDLE: Invalid handle (0xc0000008)
wbinfo -a myname
Enter myname's
2008 Oct 03
0
squid ntlm_auth not working on versions above 3.0.26
Hello. I am using squid with ntlm authentication against a samba PDC. It has worked for me perfectly in debian etch with samba version 3.0.24, and ubuntu Gutsy with samba 3.0.26a.
But when I have upgraded those servers to hardy (samba 3.0.28a) and lenny (3.2.3), thn sqwuid auth has stopped working, without any other config change.
Squid version I am using is 2.6-STABLE17, and . I am using the
2016 May 31
0
Using ntlm_auth with a non-Squid application
Hi Gaetano,
Good plan, I'd be very interested in your work as I am starting to look at
symfony here, also!
I do have ntlm_auth working perfectly using Samba 4 (and with badlock
patches). I use it with freeradius, not squid. An extract from my
/etc/raddb/modules/mschap, if it helps:
ntlm_auth = "/usr/local/samba/bin/ntlm_auth --request-nt-key
2004 Apr 23
0
RES: RES: Problems with ntlm_auth --helper-protocol=squid -2.5- ntlmssp
What do you mean with "... ntlm_auth --helper-protocol=squid-2.5-ntlmssp
does respond only BH..." ? Is it happing in a command line test ?
Remember that this helper wait for a NTLM "hash" not a clear user and
password, as basic helper does.
The best way of testing is to put in use, inside the squid.conf. I've be
using it for some months without problem.
-----Mensagem
2005 Oct 15
3
Problem with ntlm_auth
Hi
I use suse 10.0 and have problems to set up ntlm_auth for squid.
It uses samba 3.0.20 and squid 2.5.stable10
I have set up winbind and everyhting seems to work.
I've changes groupownerchip of /var/lib/samba/winbindd_privileged
to squid. squid runs as group squid.
Everyhting is working fine for several minutes.
After a while it doesn't work anymore
proxy:/var/log/samba #
2012 Aug 18
2
Unable to use more than 1000 concurrent ntlm_auth processes
Hi List,
I'm running a heavily loaded squid server that uses ntlm_auth to provide NTLM authentication.
As load has increased over time, I've found the need to increase the number of ntlm_auth processes available to squid as well as the "winbind max clients" value in the smb.conf file. This has worked well up until now but seems I've hit some sort of limit.
If I keep the
2005 Apr 04
1
IE improperly prompts for credentials; ntlm_auth with Samba 3.0.13, Squid 2.5.STABLE7, RedHat Linux 9.0, SmartFilter 4.01
This turned into the mother of all system integration exercises and I
**almost** have it working.
I am trying to set up proxy authorization using:
RedHat Linux 9.0,
MIT Kerberos 1.4 built from source,
Samba 3.0.13 built from source,
Squid 2.5.STABLE7 built from source
SmartFilter 4.01.
Active Directory with Windows 2003
Why not use RPMs? Well - ADS support for Windows 2003 needs
2004 Nov 29
0
[newbie] SQUID/SAMBA problems with NTLM_Auth
Hello, I havn't gotten an answer over on the squid usergroup - so I'm hoping
someone can help me here.
SUSE - 9.1
SQUID - 2.5.STABLE5
SAMBA - 3.0.2a-SUSE (the one that came with SUSE Installer by YAST)
I have set up squid, samba, got the winbind to work great
Wbinfo -t, -u, -g all work great
Squid also worked great until I tried to tie in NTLM_Auth
If I authenticate using
2010 Feb 11
0
squid, ntlm_auth, winbind problem
Hi all,
please cc me, i'm not on the list.
Second: All google findable information about problems setting up
ntlm_auth for squid with winbind are read and checked more than
three times.
After breaking a running setup under debian squeeze, i go back to debian
lenny to circumvent the actual MIT kerberos problem[1].
[1] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=566977#57
Now i
2005 Oct 10
2
ntlm_auth SID problem
Hello all
Im using a linux box running CentOS 4.1 as a proxy server with user
auth with an AD
Its working for a long time, but suddenly this weekend the users cant
authenticate anymore
looking on logs i obtain this
Oct 10 08:29:59 sol (ntlm_auth): [2005/10/10 08:29:59, 0]
utils/ntlm_auth.c:get_require_membership_sid(237)
Oct 10 08:29:59 sol (ntlm_auth): Winbindd lookupname failed to resolve
2005 Sep 30
1
Trouble with ntlm_auth
Hi all,
I'm having trouble getting ntlm_auth working with the
"--require-membership-of=" option. I did rebuild the Samba RPM so that it
had the --enable-auth="ntlm,basic" and
--enable-external-acl-helpers="wbinfo_group" settings. The command line
test for the squid-2.5-basic protocol returns an "OK". The one using the
squid-2.5-ntlmssp protocol
2018 Sep 27
2
[OT?] passing group name with spaces to ntlm_auth...
I've not clear if is a squid or a samba/ntlm_auth trouble... indeed...
In Squid i've added:
auth_param ntlm program /usr/bin/ntlm_auth --helper-protocol=squid-2.5-ntlmssp --domain=LNFFVG --require-membership-of='LNFFVG\Domain Users'
auth_param ntlm children 5
but in 'cache.log' i got:
Winbindd lookupname failed to resolve 'LNFFVG\Domain into a SID!
Winbindd