Re: [squid-users] smb_auth while changing the Domain fron mixed to native mode

From: Guido Serassio <serassio@dont-contact.us>
Date: Fri, 11 Oct 2002 09:54:40 +0200

Hi,

At 11.22 11/10/2002, Wolf Hees wrote:
>Hi there,
>
>thanks for your answers. I didnt follow the discussion 2 weeks ago as I
>am only on this list since yesterday. I will look in the archive then.
>
> > At 16.45 10/10/2002, Guilherme Goes wrote:
> > >If you change your AD to native mode you will not be able to use
> > >smb_auth , you should use a ldap helper to authenticate against your
> > >AD, there was a discussion on this list a while ago ( 2 weeks ) .
>
> > Sorry, but this is totally wrong.
> > Native mode doesn't change the compatibility with pre Windows 2000
> > clients. What make the difference is the selection of the Pre-Windows
> > 2000 compatibility at the AD domain first installation.
>So that means to me that it will continue to work. I dont know any about
>AD or other Win related stuff. I just manage the squid of a customer
>that wants to change to native mode.

If Your customer is already running a W2K domain in mixed mode, it should
continue to work, but, please note that I have tested this ONLY with Squid
2.5 STABLE 1 running basic and NTLM authentication protocol.

> > My test environment is a Windows 2000 Active Directory domain running
> > in native mode, and all NTLM authenticators, SMB and windbind, are
> > working fine.
>Are these other possibilities to authenticate against a AD? Is SMB =
>smb_auth?

I'm speaking about Squid 2.5. The MSNT 2.4 basic authenticator in 2.5 now
is named SMB.

Using 2.5, You can use basic and NTLM authentication using winbind support.

Regards

Guido

>Cheers
> Wolf Hees

-
=======================================================
Serassio Guido
Via Albenga, 11/4 10134 - Torino - ITALY
E-mail: guido.serassio@serassio.it
WWW: http://www.serassio.it
Received on Fri Oct 11 2002 - 01:54:53 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:10:40 MST