Moin, I want to use a 'secret' http header entry instead of using a username with password for user authentication. Let's say 'only if the browser set a 'UseSquidProxy true entry' the access is ok. Otherwise it is forbidden. I found only header_access and header_replace in the documentation, but this does not what I need. Any hint? Thanks -- |Michael Renner E-mail: michael.renner@xxxxxx | |D-81541 Munich Germany ICQ: #112280325 | |Germany Don't drink as root! ESC:wq