[squid-dev] [PREVIEW] rework msntauth helper

Amos Jeffries squid3 at treenet.co.nz
Sun Dec 28 09:17:32 UTC 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 28/12/2014 10:00 p.m., Kinkie wrote:
> Hi, I confirm it. It's very dumb, it'll attempt to connect to each
> DC in succession and attempt authentication (using the lanman
> protocol). If any DC succeeds, then auth succeeds. I plan to try
> and cook up something using samba4' libsmbclient next, that should
> be much more sustainable.

Great. I am hoping we can drop the MSNT-multi-domain script in favour
of this main one. Even being able to bind which DOMAIN get looked up
on which DC would be enough to do that.

Amos

> 
> On Sun, Dec 28, 2014 at 3:24 AM, Amos Jeffries
> <squid3 at treenet.co.nz> wrote: On 28/12/2014 11:20 a.m., Kinkie
> wrote:
>>>> It has now passed a functionality test, it works (at least
>>>> against a samba server configured to accept lanman logons).
>>>> I'll do the polishing tomorrow, run a series of test builds
>>>> and merge.
>>>> 
> 
> Great.
> 
> Looking at the code changes I suspect this helper is able to do
> login checks against a number of DC in different domains. Are you
> able to confirm/deny that behaviour?
> 
> Amos
> 
> 
> 

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (MingW32)

iQEcBAEBAgAGBQJUn8qrAAoJELJo5wb/XPRjbHMH/3bei2RF0YG9Sc3/920wE2fX
OJveY1/tV2hlC+qF/afIIxZ3PorgpXbsEUooiSjE9MTGjo43jAvJJCvuCENABLTF
60TGX1W28HtwY6wIXfgoXa8rXOrdSev8SLfYV9ptjViX6/nEVMZApZHvsBYVHkdU
2V7r567s5es1qiohgSlZKZOrOjSuQ1Pw3m9IOrPBdOpPEbEMR19Zs/t8bv79zOSa
Hl9Z6NRTkS2ntmOWNJIfM3LyyoLVv/FlcN1I4biMoykDGab6l7pcNJs/ZYIm9rBm
bZRWfAiCvtijhZ5YRS/0nJaeKzBkaI6PtBoW+viL4J5RHZKsP4MFe8MUL3M7I7c=
=AgrG
-----END PGP SIGNATURE-----


More information about the squid-dev mailing list