Koozali.org: home of the SME Server
Legacy Forums => Experienced User Forum => Topic started by: Juan C. Correa on August 17, 2001, 11:41:27 PM
-
Hi I create a E-mith server with squid for a Education company. But in recent days Microsoft enter to this company like a consultant an tell the client to avoid the usage of the e-smith servers (5) because they say the e-smith and squid cant not be posible to validate the users in existing w2k active directory.
Is it posible to validate the squid users against an Win2K Active Directory?
-
Hi Juan,
don't hear what M$ is saying. You don't need software from them!
M$ sucks!!!
greetings
ludmilla
-
Hi ludmilla
But how i can validate my e-smith proxy account in a W2k Server?
att Jc
-
Tell them that Microsoft is the problem and ask the consultant why Active Directory won't validate user accounts with your e-smith squid setup.
What would they rather have on the perimeter - a rock or a piece of swiss cheese?
Justin.
-
I beleive the prob -- If you want to call it a "problem" -- is that overall w2000 authenticates differently than nt4 or 95/98/etc. Other server folk are running into the same problem -- NetWare, Apple, etc. I'm sure someone will create an rpm to "fix" this problem in e-smith when we all get done yawning...
-
from e-smith's faqs:
23.Can e-smith accept Domain Logons from Win2000?
From the Samba PDC FAQ:
"Samba 2.0.7 will not accept Domain Logons from Win2000 although it will offer file shares to it. It will not do trust relationships."
e-smith 4.1.2 ships with Samba 2.0.7-21ssl. Future versions of Samba and e-smith will likely support Win2000 Domain Logons.
-
According to this website:
http://www.fatgut.org/squid/group_ldap_auth/
you can recompile squid to support LDAP for user/group authentication. MSAD is claiming to be a LDAP compliant server so that may be a solution for you. I haven't done it since I don't need it but it looks viable.
Sean