Re: authentication on NT PDC

From: Henrik Nordstrom <hno@dont-contact.us>
Date: Wed, 05 Jul 2000 20:49:08 +0200

Martin Brooks wrote:

> Passwords are sent to Squid in plain text format. Soemone sniffing your
> local network could potentially intercept this. As I understand it, the
> password is not cached by Squid itself but is presented each time by the
> browser. This adds up to an increase in the amount of authenication your
> PDC(s)/BDC(s) will be doing.

Well, the password cached inside Squid (but not on disk) for the
duration of authenticate_ttl, to not overload the backend system with
password validations.

--
Henrik Nordstrom
Squid hacker
Received on Wed Jul 05 2000 - 13:57:33 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:54:21 MST