Hi Fred, I assume that by "implicit" you mean "transparent" or "interception". Short answer, not possible: there is nothing to anchor cookies to. It could be possible to fake it by having an auxiliary website doing standard SAML and feeding a database of associations userid-ip. It will fail to account for cases where multiple users share the same IP, but that doesn't stop many vendors from caliming they do "transparent authentication". On Tue, Sep 20, 2016 at 9:58 AM, FredB <fredbmail@xxxxxxx> wrote: > I forgot, if possible a method without active directory > _______________________________________________ > squid-users mailing list > squid-users@xxxxxxxxxxxxxxxxxxxxx > http://lists.squid-cache.org/listinfo/squid-users -- Francesco _______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users