Hi, I used http://wiki.squid-cache.org/ConfigExamples/Authenticate/WindowsActiveDirectory to successfully kerberos. When using Kerberos you must use the FQDN in the browsers proxy settings otherwise the browser will just try NTLM. -----Original Message----- From: João Paulo Ferreira [mailto:jferreira.ba@xxxxxxxxx] Sent: 15 March 2012 10:52 PM To: squid-users@xxxxxxxxxxxxxxx Subject: Help-me Hello, I'm trying to configure squid 3.1.19 on CentOS 6.0 authenticating with Active Directory, the helper is the authentication NEGOTIATE with KERBERO. infrastructure Squid: 03/01/19 Operating System: Windows Server 2008 R2 and CentOS 6.0 Other software: Winbind and Kerberos. Problem: Every time the user will access the network in the cache.log segunte the message: "authenticateNegotiateHandleReply: Error validating user via Negotiate. Error returned 'BH received type 1 NTLM token'" Does anyone know a possible solution? thank you