[squid-users] SSO and Squid, SAML 2.0 ?

Amos Jeffries squid3 at treenet.co.nz
Thu Oct 6 10:17:50 UTC 2016


On 6/10/2016 9:57 p.m., FredB wrote:
> Hello,
> 
> I found no way to do that, so I changed my mind
> I can authenticate a user to squid with a certificate ? I'm thinking about a smart card 
> 
> If yes the user name can be saved in squid log file ?
> aking a


Maybe.

There is some very old logic for checking client certificates. The
https_port clientca= parameter enables that. AFAIK you simply configure
it with the CA certificate that was used to issue the client certs and
the rest is automatic.

There are also client cert logformat codes, and the generic %un has code
to pull a 'cert username' from a cert.

I'm not aware of anyone actually using that feature in the a long time
though. So YMMV.

HTH
Amos



More information about the squid-users mailing list