LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 12-08-2016, 09:35 AM   #1
saavik
Member
 
Registered: Nov 2001
Location: NRW, Germany
Distribution: SLES / FC/ OES / CentOS
Posts: 614

Rep: Reputation: 32
CentOS7 / squid_ldap_auth


I am trying to switch from Sles11 so CentOS7 with my Squid.

Question:

I just can`t find the squid_ldap_auth for CentOS7.

Where/how can i get that ?

OK,OK

I found

basic_ldap_auth,digest_ldap_auth,ext_ldap_group_acl

But i am still working on it to do what i want. Maybe someone has it working with eDir ?

Last edited by saavik; 12-08-2016 at 10:05 AM.
 
Old 12-09-2016, 09:32 AM   #2
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,693

Rep: Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972Reputation: 7972
Quote:
Originally Posted by saavik View Post
I am trying to switch from Sles11 so CentOS7 with my Squid.

Question: I just can`t find the squid_ldap_auth for CentOS7. Where/how can i get that ?

OK,OK I found

basic_ldap_auth,digest_ldap_auth,ext_ldap_group_acl But i am still working on it to do what i want. Maybe someone has it working with eDir ?
If you told us exactly what you want it to do, what error(s)/message(s) you're getting, etc., maybe we can help. We can't guess....what do you mean by "eDir", and what are you trying to actually do?
 
Old 12-12-2016, 06:42 AM   #3
saavik
Member
 
Registered: Nov 2001
Location: NRW, Germany
Distribution: SLES / FC/ OES / CentOS
Posts: 614

Original Poster
Rep: Reputation: 32
Ok..sure....

I`d like to use the ediretory LDAP to auth users being member of a specific group which allows them to access the internet via squid-Server.

now i allready found that this might be the "auth_param basic program /usr/lib64/squid/basic_ldap_auth" which already asks for username an password but it does not give me any access to the internet never the less what group i am in or not....

I think its about the wrong

Code:
# /usr/lib64/squid/basic_ldap_auth -d -b "cn=ldap,o=xxxx" -w xxxxx -b o=xxxx -s sub -f "(&(objectclass=User)(cn=%s)(groupMembership=%g))" -h ldaps://1xxx -p 636
ldap ldap
basic_ldap_auth.cc(685): pid=11111 :user filter '(&(objectclass=User)(cn=ldap)(groupMembership=6.95281e-310))', searchbase 'o=xxx'
basic_ldap_auth: WARNING, LDAP search error 'Can't contact LDAP server'
ERR Success

ERR Missing username
ldapsearch works, and i can see that the ldap-server is responding....


found digest_edirectory_auth working on that....

that looks good, but does not work.

I used:

Quote:
/usr/lib64/squid/digest_edirectory_auth -A password -v 3 -D "cn=ldap,o=xxx" -b "o=kxxx" -w xxxx -b o=xxxxx -s sub -F "(&(objectclass=User)(cn=%s))" -h xxxxxx
user pw
ER
I am not sure if "-A password" is the right field. Any idea ?

Last edited by saavik; 12-12-2016 at 07:34 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Problems authenticating with squid_ldap_auth josemi Linux - Server 1 05-19-2012 04:45 PM
need help with squid_ldap_auth linx win Linux - Server 3 05-07-2009 04:17 PM
squid_ldap_auth with ADS ksri07091983 Linux - Server 1 12-26-2007 07:20 PM
squid_ldap_auth niranjan_mr Linux - Software 1 07-28-2005 11:16 AM
MNF 8.2 and squid_ldap_auth with openldap v3 outburst Mandriva 0 04-30-2004 06:47 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 05:24 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration