|
From: Heiko Z. <he...@zu...> - 2003-10-11 00:46:18
|
Friedrich Lobenstock wrote: > Bruce Smith wrote: > >>> Isn't there a patch or config option where you could disable the >>> nis support in squid's authorization module? I would not really >>> want to run a bloated squid on a caching firewall. >> >> >> >> Not necessary. All the squid authorization modules are completely stand >> alone binaries. They only take up a little space on the CD. They are >> not run unless you add a line in /etc/squid.conf something like: >> >> auth_param basic program /usr/sbin/yp_auth ... > > > Ok, good, but for a real firewall can we offer a configure option so > those modules can be selected on an per module basis or just "auth > modules yes or no"? So the security consious people can create their > own stripped down firewall only version. Just a thought. > He got a point again.... Bruce already added the option to (de-)select the nis and port mapper stuff. I would suggest that you (Bruce) add some more intelligence to the squid script. This should make everybody happy. cya Heiko |