<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=us-ascii">
<meta name="Generator" content="Microsoft Word 15 (filtered medium)">
<style><!--
/* Font Definitions */
@font-face
{font-family:"Cambria Math";
panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri",sans-serif;}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:#0563C1;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:#954F72;
text-decoration:underline;}
p.msonormal0, li.msonormal0, div.msonormal0
{mso-style-name:msonormal;
mso-margin-top-alt:auto;
margin-right:0in;
mso-margin-bottom-alt:auto;
margin-left:0in;
font-size:11.0pt;
font-family:"Calibri",sans-serif;}
span.EmailStyle18
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.tlid-translation
{mso-style-name:tlid-translation;}
span.EmailStyle21
{mso-style-type:personal-reply;
font-family:"Calibri",sans-serif;
color:windowtext;}
.MsoChpDefault
{mso-style-type:export-only;
font-size:10.0pt;}
@page WordSection1
{size:8.5in 11.0in;
margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
</head>
<body lang="EN-US" link="#0563C1" vlink="#954F72">
<div class="WordSection1">
<p class="MsoNormal">Hello Randi,<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">You seem to be wishing to setup Single-Sign-On. We have a small guide here that might be of some help. It is proven and it definitely works. It involves Microsoft AD and Kerberos
<a href="https://docs.diladele.com/administrator_guide_stable/active_directory/index.html">
https://docs.diladele.com/administrator_guide_stable/active_directory/index.html</a><o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">The guide involves our Web Safety product but it should not really matter, the pristine Squid will do just fine. You can also use the community version of our UI for Squid, it is completely free so may also be helpful if you need browser
management of your proxy box.<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Best regards,<o:p></o:p></p>
<p class="MsoNormal">Rafael <o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<div>
<div style="border:none;border-top:solid #E1E1E1 1.0pt;padding:3.0pt 0in 0in 0in">
<p class="MsoNormal"><b>From:</b> squid-users <squid-users-bounces@lists.squid-cache.org>
<b>On Behalf Of </b>Randi Indrawan<br>
<b>Sent:</b> Thursday, August 22, 2019 6:28 PM<br>
<b>To:</b> squid-users@lists.squid-cache.org<br>
<b>Subject:</b> [squid-users] AD user Login + Squid Proxy + Automatic Authentication<o:p></o:p></p>
</div>
</div>
<p class="MsoNormal"><o:p> </o:p></p>
<p><span lang="EN-ID">So I have setup a squid proxy on a CentOS 7 Server and </span>
<span class="tlid-translation"><span lang="EN">now the authentication system uses ldap and it works, I can set which groups get access through a proxy</span></span><span lang="EN-ID"><o:p></o:p></span></p>
<p><span lang="EN-ID">The problem is ... can we setup </span><span class="tlid-translation"><span lang="EN">the proxy read the domain id that is being logged</span></span><span lang="EN-ID">,
</span><span class="tlid-translation"><span lang="EN">so the proxy no longer asks for a username and password</span></span><span lang="EN-ID">. All the tutorials I've seen are pop-up messages asking for the username and password. I would like this to happen
automatically so when the user logs in they automatically authenticate<o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-ID">Best Regards<o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-ID">Randi Indrawan<o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-ID">DISCLAIMER : The information contained in this communication (including any attachments) is privileged and confidential, and may be legally exempt from disclosure under applicable law. It is intended only for the specific
purpose of being used by the individual or entity to whom it is addressed. If you are not the addressee indicated in this message (or are responsible for delivery of the message to such person), you must not disclose, disseminate, distribute, deliver, copy,
circulate, rely on or use any of the information contained in this transmission. We apologize if you have received this communication in error; kindly inform the sender accordingly. Please also ensure that this original message and any record of it is permanently
deleted from your computer system. We do not give or endorse any opinions, conclusions and other information in this message that do not relate to our official business.
<o:p></o:p></span></p>
</div>
</body>
</html>