Search squid archive

Re: Re: Re: Re: SSO with Active Directory-Squid Clients

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



fre 2010-04-09 klockan 12:12 +0100 skrev Markus Moeller:

>    Regarding your second point about workgroups the answer is that Kerberos 
> can work too (with popup). But to make it work your DHCP server has to 
> privode WINS servers (or it has to be hardcoded on the client). When a 
> client gets the Negotiate request the client will try to find out where the 
> domain server is for that domain (using the username details e.g. @DOMAIN) 
> via Netbios name resolution using the configured WINS servers.   Once they 
> are determined the client will send AS and TGS requests to the domain server 
> and can then authenticate to the proxy.

Are you sure it relies on WINS in this case? DNS SRV records is the
normal mechanism for discovery of KDC servers..

Regards
Henrik


[Index of Archives]     [Linux Audio Users]     [Samba]     [Big List of Linux Books]     [Linux USB]     [Yosemite News]

  Powered by Linux