Displaying 20 results from an estimated 11000 matches similar to: "A question about ntlm_auth tool."
2003 Nov 11
1
ntlm_auth and squid authentication problems
Hi all,
I've a little problem using ntlm_auth with squid.
Scenario: Redhat 9, Samba 3 compiled, squid-2.5 compiled.
smb.conf:
[global]
encrypt passwords = Yes
winbind separator = \
winbind cache time = 10
template homedir = /home/%D/%U
template shell = /bin/bash
idmap uid = 10000-20000
idmap gid = 10000-20000
winbind uid = 10000-20000
winbind gid = 10000-20000
winbind enum users = yes
2005 Nov 19
2
ntlm_auth and PEAP machine authentication
At
http://groups.google.de/group/mailing.unix.samba/browse_frm/thread/3806dd92303380d1/10f21511e488d8d0?lnk=st&q=ntlm_auth++%22machine+authentication%22&rnum=1&hl=de#10f21511e488d8d0
the question is discussed, whether ntlm_auth can be used for machine 
authentication against a Win2003/AD.
and the conclusion seems to be, that it is not really clear:
 >Machine accounts are a problem
2005 Oct 02
1
ntlm_auth and PEAP machine authentication
I am trying to use ntlm_auth for machine authentication requests against a Win2003/AD from my RADIUS server.  Normal, user authentication works fine, but not machine authentication.  The username passed from RADIUS to ntlm-auth looks like host/pcname123.  I'm wondering if the "/" is killing it?  The ntlm_auth man page says that it expects only Samba's unix charset.  
Does anyone
2005 Apr 05
0
RE: [squid-users] IE improperly prompts for credentials; ntlm_auth with Samba 3.0.13, Squid 2.5.STABLE7, RedHat Linux 9.0, SmartFilter 4.01; ticket number 48293
YES!!!!!!!!!!!!!!!
HOT DOGGIES!!!!!!!!!!!!!!!!!!!!!
I think I fixed it.  The problem - Squid worked at my test site - it did
not popup a login window, but instead used Ssamba's ntlm helper program
to get credentials from IE.  But at my customer site it did (improperly)
popup a login window.  The squid.conf files were almost identical - even
to the point where my working test site incorrectly
2005 Apr 04
1
IE improperly prompts for credentials; ntlm_auth with Samba 3.0.13, Squid 2.5.STABLE7, RedHat Linux 9.0, SmartFilter 4.01
This turned into the mother of all system integration exercises and I
**almost**  have it working.  
I am trying to set up proxy authorization using:  
	RedHat Linux 9.0, 
	MIT Kerberos 1.4 built from source, 
	Samba 3.0.13 built from source, 
	Squid 2.5.STABLE7 built from source
	SmartFilter 4.01.  
	Active Directory with Windows 2003
Why not use RPMs?  Well - ADS support for Windows 2003 needs
2009 Jan 14
0
problem with ntlm_auth and apache2
I'm trying to get mod_auth_ntlm with apache2 to work but it refuses to do 
so.
ntlm_auth does work if I use the commandline argument.
The error I got is:
[2009/01/13 13:07:09, 5] lib/debug.c:debug_dump_status(391)
INFO: Current debug levels:
all: True/10
tdb: False/0
printdrivers: False/0
lanman: False/0
smb: False/0
rpc_parse: False/0
rpc_srv: False/0
rpc_cli: False/0
passdb: False/0
sam:
2010 Feb 11
0
squid, ntlm_auth, winbind problem
Hi all,
please cc me, i'm not on the list.
Second: All google findable information about problems setting up
		ntlm_auth for squid with winbind are read and checked more than
		three times.
After breaking a running setup under debian squeeze, i go back to debian
lenny to circumvent the actual  MIT kerberos problem[1].
[1] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=566977#57
Now i
2003 Dec 18
2
ntlm_auth problem in Squid 2.5
Hi!
I have a problem with the ntlm_auth helper (samba-3.0.2) under squid. I 
got the following from the cache.log:
[2003/12/18 15:36:48, 10] utils/ntlm_auth.c:manage_squid_request(1114)
  Got 'YR' from squid (length: 2).
[2003/12/18 15:36:48, 10] 
utils/ntlm_auth.c:manage_squid_ntlmssp_request(362)
  got NTLMSSP packet:
[2003/12/18 15:36:48, 10] 
2004 Apr 23
0
RES: RES: Problems with ntlm_auth --helper-protocol=squid -2.5- ntlmssp
What do you mean with "... ntlm_auth --helper-protocol=squid-2.5-ntlmssp
does respond only BH..." ? Is it happing in a command line test ?
Remember that this helper wait for a NTLM "hash" not a clear user and
password, as basic helper does.
The best way of testing is to put in use, inside the squid.conf. I've be
using it for some months without problem.
-----Mensagem
2016 May 31
0
Using ntlm_auth with a non-Squid application
Hi Gaetano,
Good plan, I'd be very interested in your work as I am starting to look at
symfony here, also!
I do have ntlm_auth working perfectly using Samba 4 (and with badlock
patches). I use it with freeradius, not squid. An extract from my
/etc/raddb/modules/mschap, if it helps:
ntlm_auth = "/usr/local/samba/bin/ntlm_auth --request-nt-key
2015 Jan 04
0
ntlm_auth random failures with dovecot
I'm still a bit fuzzy on exactly what has blown up here since my 1.2
install (or maybe it was broken then and I never noticed), but it
looks like the way dovecot is calling out to ntlm_auth is violating
the --helper-protocol=squid-2.5-ntlmssp scheme.
The issue is how it handles simultaneous clients connecting - for
instance launching thunderbird with NTLM auth creates multiple imapds
that all
2018 Sep 27
0
[OT?] passing group name with spaces to ntlm_auth...
Hai marco, 
More info on squid config might help here and no smb.conf.. 
Ahead of things...  
And you better use something like this, change to negotiate auth. ( and use SSO ). 
auth_param negotiate program /usr/lib/squid/negotiate_wrapper_auth \
    --kerberos /usr/lib/squid/negotiate_kerberos_auth -s HTTP/proxy1.internal.domain.tld at REALM \
    #Or if you dont have the SPN set. --kerberos
2004 Jul 07
1
RES: ntlm_auth help
Isn't possible to test the ntlm_auth with the ntlmssp protocol in a command
line mode, you must use a browser able to handle ntlm because only this sort
of browser send the appropriate ntlm challenges, try IE.
Estevam Henrique
-----Mensagem original-----
De: samba-bounces+ecarvalho=bmf.com.br@lists.samba.org
[mailto:samba-bounces+ecarvalho=bmf.com.br@lists.samba.org] Em nome de
Champaka
2005 Sep 30
1
Trouble with ntlm_auth
Hi all,
I'm having trouble getting ntlm_auth working with the
"--require-membership-of=" option.  I did rebuild the Samba RPM so that it
had the --enable-auth="ntlm,basic" and
--enable-external-acl-helpers="wbinfo_group" settings.  The command line
test for the squid-2.5-basic protocol returns an "OK".  The one using the
squid-2.5-ntlmssp protocol
2015 Mar 17
1
NTLMv2 can't auth affter Win2003 update
On 17/03/15 10:13, Sense Zeng wrote:
> And use ntlm_auth fail too:
>
> ntlm_auth --username=testuser
> password:
> NT_STATUS_LOGON_FAILURE: Logon failure (0xc000006d)
>
>
> 2015-03-17 7:30 GMT+00:00 Sense Zeng <opaperjam at gmail.com>:
>
>> My AD server is Win2003. And my linux server is ubuntu. Samba version is
>> 2:3.6.3-2ubuntu2.12 and
2015 Jan 04
0
dovecot and ntlm_auth through winbind
Hi all,
I am upgrading a dovecot 1.2 installation to a 2.2 installation and
have found and fixed a number of problems..
I've seen several postings in the archive about ntlm_auth not working,
and it is true, there are several regressions in dovecot here.
The first and simplest is that the enablement instructions in the
wikki are wrong. ntlm_auth must be called as root, which is what 1.2
did.
2009 Dec 28
2
Samba4 and Squid3 with ntlm_auth
Hello there.
I'm try to configure squid3 with samba4-alpha-10 autentication.
My samba4 pdc work fine with a simple smb.conf:  
[globals]
        netbios name    = PANTRO
        workgroup       = MYDOMAIN
        realm           = MYDOMAIN.LAN
        server role     = domain controller
[netlogon]
        path = /usr/local/samba/var/locks/sysvol/mydomain.lan/scripts
        read only = no
2004 Apr 23
1
RES: Problems with ntlm_auth --helper-protocol=squid-2.5- ntlmssp
You should use the ntlm_auth module provided by samba.
-----Mensagem original-----
De: samba-bounces+ecarvalho=bmf.com.br@lists.samba.org
[mailto:samba-bounces+ecarvalho=bmf.com.br@lists.samba.org] Em nome de
Riccardo Baldanzi
Enviada em: quinta-feira, 22 de abril de 2004 16:51
Para: samba@lists.samba.org
Assunto: [Samba] Problems with ntlm_auth --helper-protocol=squid-2.5-ntlmssp
Hi Guys,
2018 Sep 27
1
[OT?] passing group name with spaces to ntlm_auth...
On Thu, 2018-09-27 at 12:27 +0200, L.P.H. van Belle via samba wrote:
> Hai marco, 
> 
> More info on squid config might help here and no smb.conf.. 
> Ahead of things...  
> 
> And you better use something like this, change to negotiate auth. (
> and use SSO ). 
> 
> auth_param negotiate program /usr/lib/squid/negotiate_wrapper_auth \
>     --kerberos
2006 Sep 12
1
Multiple Group checking using ntlm_auth
Hi,
We are running Squid version:  2.5.STABLE13 and Samba version: Version
3.0.21b
We have it setup to use NTLM to check that the user belongs to a group
within the domain. The need has arrisen to be able to support multiple
groups. Is this possible?
Our squid.conf section:
auth_param ntlm program /ntlm_auth.sh ntlmssp
auth_param ntlm max_challenge_reuses 0
auth_param ntlm