Hi. On 19.10.2014 13:32, Victor Sudakov wrote: > > Hopefully I can interest our Windows admin to enable Kerberos event > logging per KB262177. > > But for the present I have found an ugly workaround. In squid's keytab, I > created another principal called 'squiduser' with the same hex key and > kvno as that of the principal 'HTTP/proxy.sibptus.transneft.ru.' > (This may sound like a dumb question, but anyway) Did you initially map any AD user to the SPN with a hostname that clients know your proxy under ? Eugene. _______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users