There is only one proxy. I've been planning on adding auth helpers as needed. Cache manager only shows 14 hits on the 5th helper in 196000 requests. There are 3 domain controllers. Is there a way to make the ntlm auth helpers go to whichever dc is available? That's probably a question for the samba list. -----Original Message----- From: Henrik Nordstrom [mailto:henrik@xxxxxxxxxxxxxxxxxxx] Sent: Tuesday, July 04, 2006 2:14 AM To: Steve Wilson Jr Cc: Squid List Subject: Re: ntlm auth fatal error mån 2006-07-03 klockan 21:03 -0400 skrev Steve Wilson Jr: > I get this error quite a bit. It doesn't cause any real problems though. > > [2006/07/03 13:13:13, 1] libsmb/ntlmssp.c:ntlmssp_update(267) > got NTLMSSP command 3, expected 1 Squid and some client got out of synch. Is there any second-level proxies involved? > FATAL: Too many queued ntlmauthenticator requests (26 on 5) > > this is what worries me. 26 in queue but according to my reporting there > were only 22 people accessing the proxy between 1 and 2. Either you have poor communication to the domain controller, or some client is opening much more connections than it should. In either case 5 NTLM auth helpers is very little... Regards Henrik