Re: [squid-users] Question about NTLM authentication

From: Kinkie <kinkie-squid@dont-contact.us>
Date: Thu, 17 Nov 2005 18:11:31 +0100

On Thu, 2005-11-17 at 15:27 +0000, lmarcilly@aressi.fr wrote:
> Hi all,
>
> i have some questions about NTLM authentication.
>
> Actually i use DansGuardian with Ident to authenticate user in order to filter traffic according to the username. But there is a problem with Ident : deployment. Installing Ident on all clients takes time so i want to find an other solution. I search about using NTLM authentication because the majority of client runs Windows so there is nothing to install for NTLM.
>
> First, i want to know if i can use NTLM authentication with ACL in order to filter traffic according to the username? I suppose i can but i'm not sure.

Yes. That's most of its purpose.

> I also want to know if Samba is required to use NTLM authentication or if there are others solutions?

There are other solutions, but Samba is highly recommended.

> And finally, i want to know if it works with Terminal servers? With Ident, if i use terminal server, dansguardian don't know the real username but user which runs Identd on the server.

Does it? I don't know about Windows identd implementations, but on Unix
identd usually returns the name of an user owning the TCP socket (unless
otherwise configured)

-- 
Kinkie <kinkie-squid@kinkie.it>
Received on Thu Nov 17 2005 - 10:11:32 MST

This archive was generated by hypermail pre-2.1.9 : Thu Dec 01 2005 - 12:00:10 MST