Answer the question
In order to leave comments, you need to log in
LDAP problem, I can't understand the authorization error, who can help?
Essence: There are kerberos, ldap, squid3, acrive directory. I'll post the config upon request.
When I run squdi3 -d10 I catch this crap:
2015/03/19 10:49:48| authenticateNegotiateHandleReply: Error validating user via Negotiate. Error returned 'BH received type 1 NTLM token
'
Answer the question
In order to leave comments, you need to log in
alex-tesla.livejournal.com/22428.html
quote:
This type of error indicates that an attempt is being made to authorize via NTLM, and not via Kerberos (1 - NTLM, 3 - Kerberos). As I wrote in the post - Opera, for example, can NTLM, but not Kerberos, so if you use the squid_kerb_auth helper, then the logs will contain the errors you described, even if everything is configured correctly. To eliminate such messages, I had to use negotiate_wrapper, for authorization through both Kerberos and NTLM.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question