Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - radeschi

#1
21.7 Legacy Series / Re: Proxy SSO Plugin
November 04, 2021, 05:44:20 PM
Hi! I'm working with Rafael on this.. The errors.. this is the problem, they don't exists, apparently should work with this configuration.

* krb5.conf is ok
* smb.conf is ok
* squid.conf is configured to work with ntlm_auth
* net ads join on domain is ok
* wbinfo to get the users is ok

But the transparent authentication(ntlm_auth) don't work with squid(command line is working fine), just the basic auth.

And here is the interesting thing, I already make this scenario work many times(linux, netbsd, freebsd), and because of this problem with the OPNSense, I built a lab with Linux + Winbind + Squid just like I always did, and this is not working! I have the same result.

I don't know if is a problem with ntlm_auth, or the squid version, or the samba version, I still could't identify. Maybe a try to downgrade the squid/samba version..
#2
Portuguese - Português / Autenticação NTLM
September 29, 2021, 03:32:17 PM
Olá,

Nas minhas redes, sempre tive squid e normalmente quando havia AD, subia autenticação com NTLM(usuário no domínio não precisa digitar usuário/senha), com regras, etc.
No Opnsense existe a possibilidade de autenticação com Active Directory, porém pelo que pude perceber, somente no modo "Basic", onde há a janela para autenticação do usuário. Alguém sabe se é possível realizar autenticação NTLM no Opnsense? Caso não seja nativo, algum método para realizar isso? Caso contrário a possibilidade que vejo é instalar o samba e realizar as configurações do squid 'na mão'.

Obrigado!