I have an NTLM auth proxy, but a number of apps do not seem to be smart enough to pass credentials and this generates numerous squid authentication pop-ups for users. I'm trying to eliminate this. I was thinking of creating a browser ACL with entries the will cover the browsers in use on the network and then try to use a NOT operator like http_access allow !known_browsers before the auth required setting. thoughts? -- Rick Chisholm Systems Administrator Parallel42