Hi maybe you must order your rules like this.
(1) auth_param basic program /usr/lib/squid/ncsa_auth /etc/squid/.password
auth_param basic children 5
auth_param basic realm YOUR PROXY NAME HERE - ALL ACCESS WILL BE REGISTERED
(2) acl password proxy_auth REQUIRED
(3) http_access allow password
This must be configured into your squid.conf
NOTE: my squid version itīs 2.5.STABLE9 and works fine
NOTE2: obviusly the numbers enclosed between brackets they must not be
inside the file squid.conf
Atte.
Damián Mantelli
-----Mensaje original-----
De: Begoņa F [mailto:blackhandes@gmail.com]
Enviado el: Miércoles, 17 de Agosto de 2005 04:31 a.m.
Para: squid-users@squid-cache.org
Asunto: [squid-users] Fwd: Problems with authentication
Hello,
I have the same problem with this ACL:
acl password proxy_auth root
acl ea src 192.168.0.0/255.255.0.0
acl all src 0.0.0.0/0.0.0.0
acl localhost src 127.0.0.1/255.255.255.255
acl to_localhost dst 127.0.0.0/8
acl manager proto cache_object
acl SSL_ports port 443 563
acl Safe_ports port 80 # http
acl Safe_ports port 21 # ftp
acl Safe_ports port 443 563 # https, snews
acl Safe_ports port 70 # gopher
acl Safe_ports port 210 # wais
acl Safe_ports port 1025-65535 # unregistered ports
acl Safe_ports port 280 # http-mgmt
acl Safe_ports port 488 # gss-http
acl Safe_ports port 591 # filemaker
acl Safe_ports port 777 # multiling http
acl CONNECT method CONNECT
http_access allow manager
http_access allow localhost
http_access allow password
http_access allow ea
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
http_access deny all
AND THE SAME ERROR:
Bungled squid.conf line 444: acl password proxy_auth root
Thanks.
---------- Forwarded message ----------
From: Begoņa F <blackhandes@gmail.com>
Date: 11-ago-2005 13:34
Subject: Problems with authentication
To: squid-users@squid-cache.org
Hello,
I sent this mail last month, but I couldn't see the list,
I repeat the problem, thanks a lot.
I have problems with the authentication. I've followed the faq's rules:
acl prueba proxy_auth REQUIRED
acl network src 192.168.0.0/255.255.0.0
acl localhost src 127.0.0.1/255.255.255.255
acl to_localhost dst 127.0.0.0/8
http_access allow localhost
http_access allow prueba network root user1
http_access deny all
2. External authenticator program.
% cd helpers/basic_auth/NCSA
% make
% make install
3. Password file
4. Configure the external authenticator in squid.conf. For
ncsa_auth you need to give the pathname to the executable and the
password file as an argument. For example:
auth_param basic program /usr/local/squid/libexec/ncsa_auth
/usr/local/squid/etc/passwd
But I'm not able to start Squid:
/var/messages:
squid: Bungled squid.conf line 444: acl prueba proxy_auth REQUIRED
Thanks for your help.
Received on Wed Aug 17 2005 - 06:29:48 MDT
This archive was generated by hypermail pre-2.1.9 : Thu Sep 01 2005 - 12:00:02 MDT