Search squid archive

Re: Authenticate Squid Using Digital Certificate

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



fre 2006-09-01 klockan 15:04 -0700 skrev Zaki Akhmad:
> On 9/1/06, Henrik Nordstrom <henrik@xxxxxxxxxxxxxxxxxxx> wrote:
> >
> > Yes, but browses only support this when using Squid as reverse proxy
> > infront of your web servers, not when using it as an Internet proxy.
> >
> > Squid doesn't use LDAP to verify the client certificate. Instead normal
> > X509 CA based chain of trust is used.
> 
> Hai Henrik, thank you for your attention. Is there any hint how to
> modify the squid.conf? So that the squid can access the certificate
> from the LDAP server. Such as
> 
> auth_param basic program ... -x -D "(cn=username)" certificateFile; ....

Squid just doesn't do this.

But in theory you should be able to write an external acl helper to
verify the certificate against LDAP after the connection has been
accepted by Squid.

Regards
Henrik

Attachment: signature.asc
Description: Detta =?ISO-8859-1?Q?=E4r?= en digitalt signerad meddelandedel


[Index of Archives]     [Linux Audio Users]     [Samba]     [Big List of Linux Books]     [Linux USB]     [Yosemite News]

  Powered by Linux