Re: [squid-users] Re: Kerberos load balancer and AD

From: Sean Boran <sean_at_boran.com>
Date: Thu, 23 May 2013 15:27:24 +0200

Referencing that "Kerberos-load-balancer-and-AD" thread, yes it does work :-).
A user is created in AD, and an SPN with the lB FQDN points to that user.
That user is then used to create the keytab on each proxy.

Sean

On 22 May 2013 22:41, SPG <spggps8.2_at_gmail.com> wrote:
> Hi,
>
> then, with this option you don't need create an account for all squids
> servers and duplicate spn in each account of squid. Only need a account for
> load balancer service. I question it, because I read this post in the
> morning and I have doubts . Is it true?
>
> http://squid-web-proxy-cache.1019090.n4.nabble.com/kerberos-auth-failing-behind-a-load-balancer-td4658773.html
>
> A lot of thanks Markus.
>
>
>
> --
> View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Kerberos-load-balancer-and-AD-tp4660187p4660207.html
> Sent from the Squid - Users mailing list archive at Nabble.com.
Received on Thu May 23 2013 - 13:27:30 MDT

This archive was generated by hypermail 2.2.0 : Thu May 23 2013 - 12:00:35 MDT