[squid-users] Watchguard firewall behind SQUID and the internet

Amos Jeffries squid3 at treenet.co.nz
Thu Nov 12 19:32:50 UTC 2015

On 13/11/2015 6:59 a.m., christian.bufacchi wrote:
> Hello.
> We have implemented a SQUID proxy between our clients and a Watchguard 
> firewall, the which contains user access rules based on our MS Active 
> Directory.
> So we currently have the following flow : Client => SQUID proxy => 
> Watchguard => Internet. 
> At the moment, the Watchguard only receives (sees) the IP address of the 
> SQUID server. No information from the client is forwarded. The clients are 
> currently able to access the Internet thru the Firewall because we have 
> the access to this IP adress.
> We would like the SQUID server to forward the client user ID (MS Windows 
> profile) to the Watchguard in order to apply more specific and detailed 
> access rules that have been defined in the Watchguard at user level.
> Is there any way to do this ?

In what way are you expecting the watchguard to accept these AD login
credentials? You said it was not doing authentication.


More information about the squid-users mailing list