Avatar of itiadmin
itiadmin
 asked on

How can I get Squid's NTLM Authentication mechanism to use Active Directory with multiple domains.

I've gotten squid's ntlm authentication with winbind to authenticate users against a single domain but I can't seem to get authentication against multiple domains working. It seems as if winbind can only join one domain at a time. Using domain trusts I can't list the users in any of the other domains with wbinfo -u. Also it doesn't seem like there is an ldap helper with multiple domain query capability. Is there any way to use squid to query the appropriate ldap or kerberos server based on the domain passed in the ntlm authentication handshake?
DatabasesLinux NetworkingWindows Server 2003

Avatar of undefined
Last Comment
WizRd-Linux

8/22/2022 - Mon
WizRd-Linux

http://riuu.wordpress.com/2008/05/02/linux-winbind-to-active-directory/ - specifically addresses multiple domains smb.conf file.
itiadmin

ASKER
I attempted to run this, still didnt work.  the domains we have are all indeoendant domain controllers of unique domains, relms, forests.   Any way to configure in this fashion?
ASKER CERTIFIED SOLUTION
WizRd-Linux

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
GET A PERSONALIZED SOLUTION
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.
Experts Exchange is like having an extremely knowledgeable team sitting and waiting for your call. Couldn't do my job half as well as I do without it!
James Murphy