On 16.09.2016 10:52, L.P.H. van Belle wrote: > I think you forgot in your test, that you may need to modify the default > kerberos ticket used. > > > > > > I suggest you change you config a bit to something like > > > > external_acl_type internet-win-allowed %LOGIN > /usr/local/libexec/squid/ext_kerberos_ldap_group_acl \ > > -D YOUR.REALM.TLD \ > > -g allowed-inter...@your.realm.tld \ > > -N ntdom...@your.realm.tld \ > > -S > dc1.your.dnsdomain....@your.realm.tld:dc2.your.dnsdomain....@your.realm.tld
Hello, Tried your suggestions but that doesn't change anything. Furthermore the ext_kerberos_ldap_group_acl creates a core dump after iterating over all the entries for the keytab... Any further ideas? -- Matthias _______________________________________________ squid-users mailing list squid-users@lists.squid-cache.org http://lists.squid-cache.org/listinfo/squid-users