Re: [squid-users] Uncomplete Negotiate negotiation with Kerberos

2018-10-03 Thread Emmanuel Coirier
he DC. It is what I have observed, but perhaps I'm missing something. So I need to be sure of this detail because we need to reduce the authentication load of some Active Directories (which previously used NTLM), and Kerberos seems to be the solution. By telling me

Re: [squid-users] Uncomplete Negotiate negotiation with Kerberos

2018-10-02 Thread Emmanuel Coirier
to starve any MITM of information it might use to reliably affect changes to > the > client tokens. This is the point I don't understand. Could you tell me more ? Thanks -- Emmanuel Coirier ___ squid-users mailing list squid-users@lists.squid-cache.org http://lists.squid-cache.org/listinfo/squid-users

[squid-users] Uncomplete Negotiate negotiation with Kerberos

2018-10-02 Thread Emmanuel Coirier
tunnel exchange) It this behavior endorsed, or is it a bug ? Actually, I know that browsers seem not to care, but they won't be able to care if they don't receive all the needed information. Thanks for reading and your response :-) -- Emmanuel Coirier __