[Info-vax] Cntlm authenticating proxy (was Re: FTP/SSL from OpenVMS (client) to Unix Filezilla (server) failure)

Stephen Hoffman seaohveh at hoffmanlabs.invalid
Thu Aug 16 08:54:13 EDT 2012


On 2012-08-16 06:26:24 +0000, Jose Baars said:

> I have ported cntlm to VMS. Alpha PCSI kit, zip with sources and 
> somedocs available at http://www.peut.org/vms/cntlm/index.html

>From <http://cntlm.sourceforge.net>, and for those who wondered what 
Cntlm was and what this port might have gotten you:

"About Cntlm proxy
Cntlm (user-friendly wiki / technical manual) is an NTLM / NTLM Session 
Response / NTLMv2 authenticating HTTP proxy intended to help you break 
free from the chains of Microsoft proprietary world. You can use a free 
OS and honor our noble idea, but you can't hide. Once you're behind 
those cold steel bars of a corporate proxy server requiring NTLM 
authentication, you're done with. The same even applies to 3rd party 
Windows applications, which don't support NTLM natively.
Here comes Cntlm. It stands between your applications and the corporate 
proxy, adding NTLM authentication on-the-fly. You can specify several 
"parent" proxies and Cntlm will try one after another until one works. 
All auth'd connections are cached and reused to achieve high 
efficiency. Just point your apps proxy settings at Cntlm, fill in 
cntlm.conf (cntlm.ini) and you're ready to do. This is useful on 
Windows, but essential for non-Microsoft OS's.
Cntlm integrates TCP/IP port forwarding (HTTP tunneling), SOCKS5 proxy 
mode, standalone proxy allowing you to browse intranet as well as 
Internet and to access corporate web servers with NTLM protection. 
There are many advanced features like NTLMv2 support, password 
protection, password hashing, completely mutliplatform code (running on 
just about every architecture and OS out there) and so much more. Cntlm 
eats up so little resources it can be used on embedded platforms as 
well - it's written in plain C without any external dependencies."

Cntlm will likely be interesting for those in Microsoft environments 
that are (still?) using NTLM, and not environments implementing 
LDAP/Kerberos or such.

-- 
Pure Personal Opinion | HoffmanLabs LLC




More information about the Info-vax mailing list