pf2ad breaks my domain controllers (lsass.exe)
-
Hello everyone !
I try to use pf2ad with squid and squidguard.
But everytime squid starts with Windind NTLM enabled, my domain controller (Windows 2019) stop working and restart. They tell me that lsass.exe stopped working and then reboot.
It looks like winbind overflow my servers. Does anyone know how to prevent it ?I don't know if it's important, but I have this message in squid logs : "negotiate_kerberos_auth: ERROR: krb5_read_keytab: Key table file '/etc/krb5.keytab' not found".
I use pfsense 2.6.0 and had the same problem with 2.5.2
Second question : if I ever succeed in making it work, is there any way to allow anonymous users ? Would be : if you are authenticated, I log it and pass. If you are not, pass anyway.
Thank you for your help
-
@joefromnowhere said in pf2ad breaks my domain controllers (lsass.exe):
I don't know if it's important, but I have this message in squid logs : "negotiate_kerberos_auth: ERROR: krb5_read_keytab: Key table file '/etc/krb5.keytab' not found".
Could get rid of "Key table file '/etc/krb5.keytab' not found".
But the problem remains.